Stránka 1 z 1

Velké využití RAM už po startu Windows 10

Napsal: 04 kvě 2019 09:02
od VelkejPitomec
Zdravím velké odporníky a odbornice,

Včera jsem narazil na zjištění, že po startu Windowsu se mi využívá 72% z celkové paměti RAM (16GB). Ale když se podívám do task managera, tak zde nemohu najít, který proces/program by si bral takové množství. Nevím jak tomu bylo dříve, všiml jsem si toho teprve včera.

Je možné, že jsem tak velký pitomec a napadl mě nějaký vir/malware nebo něco jiného ?

Screen z task managera:
http://leteckaposta.cz/229063736

Moc děkuju za pomoc

VP

---
Ještě přikládám logy z FRST
---
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02-05.2019
Ran by User007 (administrator) on DESKTOP-4S44MO1 (MSI MS-7850) (04-05-2019 10:19:55)
Running from C:\Users\User007\Downloads
Loaded Profiles: User007 (Available Profiles: User007)
Platform: Windows 10 Home Version 1809 17763.437 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Program Files\WindowsApps\Microsoft.BingWeather_4.28.10351.0_x64__8wekyb3d8bbwe\Microsoft.Msn.Weather.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.44.40.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19021.18010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19041.481.0_x64__8wekyb3d8bbwe\YourPhone.exe
(ALCPU -> ALCPU) C:\Program Files\Core Temp\Core Temp.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Blizzard Entertainment, Inc. -> Blizzard Entertainment) C:\Program Files (x86)\Blizzard App\Battle.net.exe
(Blizzard Entertainment, Inc. -> Blizzard Entertainment) C:\Program Files (x86)\Blizzard App\Battle.net.exe
(Blizzard Entertainment, Inc. -> Blizzard Entertainment) C:\Program Files (x86)\Blizzard App\Battle.net.exe
(Blizzard Entertainment, Inc. -> Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.6685\Agent.exe
(Discord Inc. -> Discord Inc.) C:\Users\User007\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\User007\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\User007\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\User007\AppData\Local\Discord\app-0.0.305\Discord.exe
(Electronic Arts, Inc. -> ) C:\Program Files (x86)\Origin\QtWebEngineProcess.exe
(Electronic Arts, Inc. -> ) C:\Program Files (x86)\Origin\QtWebEngineProcess.exe
(Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\Origin.exe
(Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.7\GoogleCrashHandler.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.7\GoogleCrashHandler64.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(Intel(R) Extreme Tuning Utility -> Intel(R) Corporation) C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe
(Logitech Inc -> Logitech Inc.) C:\Program Files\Logitech Gaming Software\ArxApplets\Discord\logitechg_discord.exe
(Logitech Inc -> Logitech Inc.) C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe
(Logitech Inc -> Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\Logitech Gaming Software\LAClient\laclient.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\User007\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.44.40.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> ) C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> ) C:\Program Files (x86)\RivaTuner Statistics Server\EncoderServer.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> ) C:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> ) C:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooksLoader64.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MICRO-STAR INTERNATIONAL CO., LTD.) C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\MSI\MSIRegister\MSIRegisterService.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Live Update\Live Update.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MysticLight\LEDKeeper.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MysticLight\MysticLight2_Service.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Paramount Software UK Ltd -> Paramount Software UK Ltd) C:\Program Files\Macrium\Reflect\ReflectService.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(SOKNO S.R.L. -> ) C:\Program Files (x86)\SpeedFan\speedfan.exe
(SteelSeries ApS -> SteelSeries ApS) C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe
(Ubisoft Entertainment Sweden AB -> Ubisoft) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\upc.exe
(Ubisoft Entertainment Sweden AB -> Ubisoft) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UplayWebCore.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve -> Valve Corporation) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) D:\Steam\Steam.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [18630280 2018-05-07] (Logitech Inc -> Logitech Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [261000 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9279328 2018-09-06] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe [1178400 2015-07-10] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation)
HKLM-x32\...\Run: [Live Update] => C:\Program Files (x86)\MSI\Live Update\Live Update.exe [26278576 2019-04-17] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
HKLM-x32\...\Run: [MSIRegister] => C:\MSI\MSIRegister\MSIRegister.exe [1266872 2019-03-08] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [645456 2019-04-01] (Oracle America, Inc. -> Oracle Corporation)
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION
HKU\S-1-5-21-2217625539-489516872-413406719-1001\...\Run: [Steam] => D:\Steam\steam.exe [3152160 2019-04-30] (Valve -> Valve Corporation)
HKU\S-1-5-21-2217625539-489516872-413406719-1001\...\Run: [Discord] => C:\Users\User007\AppData\Local\Discord\app-0.0.305\Discord.exe [81780056 2019-03-07] (Discord Inc. -> Discord Inc.)
HKU\S-1-5-21-2217625539-489516872-413406719-1001\...\Run: [Ubisoft Game Launcher] => C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uplay.exe [470872 2019-04-23] (Ubisoft Entertainment Sweden AB -> Ubisoft)
HKU\S-1-5-21-2217625539-489516872-413406719-1001\...\Run: [EpicGamesLauncher] => "D:\Epic Games\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe" -silent
HKU\S-1-5-21-2217625539-489516872-413406719-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3114256 2019-04-30] (Electronic Arts, Inc. -> Electronic Arts)
HKU\S-1-5-21-2217625539-489516872-413406719-1001\...\Run: [Battle.net] => C:\Program Files (x86)\Blizzard App\Battle.net.exe [1098728 2019-04-30] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
HKU\S-1-5-21-2217625539-489516872-413406719-1001\...\RunOnce: [Application Restart #3] => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
HKU\S-1-5-21-2217625539-489516872-413406719-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\Bubbles.scr [807424 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-18\...\RunOnce: [Application Restart #0] => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\system32\rtvcvfw64.dll [246272 2012-09-28] () [File not signed]
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [247296 2012-09-28] () [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\74.0.3729.131\Installer\chrmstp.exe [2019-05-01] (Google LLC -> Google Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SteelSeries Engine 3.lnk [2019-04-23]
ShortcutTarget: SteelSeries Engine 3.lnk -> C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe (SteelSeries ApS -> SteelSeries ApS)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {034AB790-3CB2-4FA1-8477-2CEC79C7621A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-03-31] (Google Inc -> Google Inc.)
Task: {071EBA52-2C1E-4839-A254-1117E790F09A} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\sdxhelper.exe [112672 2019-05-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {09FFAE7F-F312-42A7-9FEE-C4FED790107B} - System32\Tasks\KiN SF => C:\Program Files (x86)\SpeedFan\speedfan.exe [8166536 2016-06-29] (SOKNO S.R.L. -> )
Task: {0AA57232-01B2-4FB6-BA63-F658CD4F7A69} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [177376 2016-08-12] (Intel(R) Update Manager -> Intel Corporation)
Task: {0CF66747-7623-491B-A562-CE9E18FDBCDB} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4382048 2019-05-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {1738A680-D42C-4AE5-9093-2DD1765C324C} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1439368 2019-05-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {1B6C7F2F-D47B-4A4D-899E-2B9F6A557570} - System32\Tasks\SmartShare => C:\Program Files (x86)\LG Software\LG Smart Share\SmartShareStart.exe [495136 2014-12-05] (LG Electronics Inc. -> LG Electronics Inc.)
Task: {27428F8D-F1A2-49D4-9E7E-B4ACC5528761} - System32\Tasks\Intel\Intel Telemetry 2 (x86) => C:\Program Files (x86)\Intel\Telemetry 2.0\lrio.exe [1328392 2015-11-20] (Intel(R) Software -> Intel Corporation)
Task: {2B55A48E-F885-4C93-B02E-04E9A2D13E08} - System32\Tasks\Core Temp Autostart User007 => C:\Program Files\Core Temp\Core Temp.exe [998488 2019-01-08] (ALCPU -> ALCPU)
Task: {2CFD6971-8C86-40CC-8C49-23456236B750} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [739624 2018-04-23] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
Task: {2F2D3D55-D18B-4A2A-862D-A68B35F769C5} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {33DB3DDC-9C90-4FD0-AF89-5B66DC12F467} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [648048 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {3E7B47FE-6AEE-492F-869E-CA982BCF07EA} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26196056 2019-04-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {441C93B0-C73F-4610-AAF6-9D00927C6DF1} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [590704 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {670B2624-8B08-4614-89A7-E4C008E25816} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3728752 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {68B34136-3C96-49B3-90FB-EC86819F56ED} - System32\Tasks\avast! Windows 10 Start Menu helper => c:\program files\avast software\avast\asww10mon.exe
Task: {6F07C126-A9D8-4CB1-BE92-D93A5F303717} - System32\Tasks\MSILEDKeeper_Host => C:\Program Files (x86)\MSI\MysticLight\LEDKeeper.exe [851128 2018-08-31] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
Task: {80803625-3A6C-4998-A136-9FF2CBAFF44C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-03-31] (Google Inc -> Google Inc.)
Task: {8C6ABE5A-DE49-451E-BC22-FEDF5829C28A} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-04-23] (Adobe Inc. -> Adobe)
Task: {A200FFDE-2065-4CCD-B330-8E576C09DE5E} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4382048 2019-05-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {AD60DACD-0C4A-4332-B523-2B1925587A4C} - System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {AF63F6EC-CF00-43AD-A5D1-A230DBCAE514} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2925960 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
Task: {BA5E82E0-21AD-43C7-97B9-037A6A28CE73} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26196056 2019-04-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {BAD55592-ABE5-490B-9AEA-4A85609E85AB} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {BB4051F5-D82A-42C7-AEDC-3337AFC749F8} - System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {C5522710-9919-48B4-B4B9-88AD0A0C2A0A} - System32\Tasks\MSISW_Host => C:\WINDOWS\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
Task: {CCB1CE4E-789B-4A76-90DC-B610E874F299} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [781680 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {CECF2105-B3D8-451F-8CAE-E1D26BC92ACC} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\sdxhelper.exe [112672 2019-05-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {D6F5A5AC-804B-4561-B26B-093C96B2E265} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {D8463A80-49EC-4417-BAE1-1633C5351EB1} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [849264 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {DB600790-BC3F-4267-B512-EE6B19D141E2} - System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {DE819F9A-32DB-41E2-A751-3A849B5EE2B3} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2380088 2019-04-06] (AVAST Software s.r.o. -> AVAST Software)
Task: {E64AAC8D-7318-4CD4-9A7D-154E6062FF47} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [177376 2016-08-12] (Intel(R) Update Manager -> Intel Corporation)
Task: {EB02E818-5536-4867-987B-18737FCD038C} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_171_pepper.exe [1452600 2019-04-23] (Adobe Inc. -> Adobe)
Task: {F73FF976-53C9-49D4-9235-1948BF3B591B} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1439368 2019-05-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {F744CD91-8EB1-4C72-95F2-88F8AF027020} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [781680 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {FC815288-958D-4D00-8587-30D8B6386E8F} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [849264 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{2a0de96e-6bd4-402c-a579-4c0b8f1d417d}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{a216f975-0bd8-43ec-852e-b6e636b1585c}: [DhcpNameServer] 192.168.0.1

Internet Explorer:
==================
HKU\S-1-5-21-2217625539-489516872-413406719-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2019-04-03] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2019-04-03] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\ssv.dll [2019-04-22] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2ssv.dll [2019-04-22] (Oracle America, Inc. -> Oracle Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-04-03] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-04-03] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-04-03] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-04-03] (Microsoft Corporation -> Microsoft Corporation)

FireFox:
========
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel(R) Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel(R) Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\dtplugin\npDeployJava1.dll [2019-04-22] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\plugin2\npjp2.dll [2019-04-22] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-04-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-04-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.7\npGoogleUpdate3.dll [2019-03-28] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.7\npGoogleUpdate3.dll [2019-03-28] (Google Inc -> Google LLC)
FF Plugin-x32: @videolan.org/vlc,version=2.2.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)

Chrome:
=======
CHR DefaultProfile: Default
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\User007\AppData\Local\Google\Chrome\User Data\Default [2019-05-04]
CHR Extension: (BetterTTV) - C:\Users\User007\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2018-12-06]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\User007\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2019-04-20]
CHR Extension: (Tipli do prohlížeče) - C:\Users\User007\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbnfnbehhjknomdbfhcobpgpphnlnikp [2019-03-15]
CHR Extension: (AdBlock) - C:\Users\User007\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-04-30]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\User007\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
CHR Extension: (Chrome Media Router) - C:\Users\User007\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-04-24]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6660888 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [362488 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
S3 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [6971400 2018-02-27] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11146240 2019-04-26] (Microsoft Corporation -> Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [781440 2018-12-09] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342456 2016-03-02] (FUTUREMARK INC -> Futuremark)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel® Trusted Connect Service -> Intel(R) Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [File not signed]
S3 intelsba; C:\Program Files\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe [58792 2016-01-28] (Intel(R) SBA -> Intel Corporation)
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [File not signed]
S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [177376 2016-08-12] (Intel(R) Update Manager -> Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [223520 2015-07-10] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [206472 2018-05-07] (Logitech Inc -> Logitech Inc.)
R2 MSIREGISTER_MR; C:\MSI\MSIRegister\MSIRegisterService.exe [2020024 2019-01-03] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [2323120 2019-04-15] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 MSI_Trigger_Service; C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe [30240 2013-09-26] (MICRO-STAR INTERNATIONAL CO., LTD. -> MICRO-STAR INTERNATIONAL CO., LTD.)
R2 MysticLight2_Service; C:\Program Files (x86)\MSI\MysticLight\MysticLight2_Service.exe [31928 2018-07-13] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [781680 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [781680 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2303792 2019-04-30] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3175216 2019-04-30] (Electronic Arts, Inc. -> Electronic Arts)
R2 ReflectService.exe; C:\Program Files\Macrium\Reflect\ReflectService.exe [3476432 2015-10-12] (Paramount Software UK Ltd -> Paramount Software UK Ltd)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3830128 2019-03-12] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [110944 2018-09-15] (Microsoft Corporation -> Microsoft Corporation)
R2 XTU3SERVICE; C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe [18264 2017-02-23] (Intel(R) Extreme Tuning Utility -> Intel(R) Corporation)
S3 DAUpdaterSvc; D:\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe [X]
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvTelemetry\plugins" -r

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 ALSysIO; C:\Users\User007\AppData\Local\Temp\ALSysIO64.sys [46384 2019-04-24] (ALCPU (Arthur Liberman) -> Arthur Liberman) <==== ATTENTION
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [37104 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [205400 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [254128 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [196000 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R0 aswblog; C:\WINDOWS\System32\drivers\aswblog.sys [320624 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [57888 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [15488 2019-01-07] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswHdsKe; C:\WINDOWS\System32\drivers\aswHdsKe.sys [257832 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42288 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [166848 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [112520 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [88160 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [1031000 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [476776 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [220640 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [385848 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2018-08-14] (Disc Soft Ltd -> Disc Soft Ltd)
S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2018-08-14] (Disc Soft Ltd -> Disc Soft Ltd)
R2 iocbios2; C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [37064 2016-08-24] (Intel Corporation -> Intel Corporation)
R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech -> Logitech)
R3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [67736 2018-05-07] (Logitech Inc -> Logitech Inc.)
R3 NTIOLib_MysticLight; C:\Program Files (x86)\MSI\MysticLight\Lib\NTIOLib_X64.sys [14288 2017-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_ed316ebc2bdc1c66\nvlddmkm.sys [21657024 2019-04-18] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-03-28] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-03-19] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [66792 2018-10-03] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1122200 2018-08-30] (Realtek Semiconductor Corp. -> Realtek )
R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [14024 2017-08-27] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
R3 ssdevfactory; C:\WINDOWS\System32\drivers\ssdevfactory.sys [46776 2018-12-21] (SteelSeries ApS -> )
R3 sshid; C:\WINDOWS\System32\drivers\sshid.sys [48032 2018-12-21] (SteelSeries ApS -> SteelSeries ApS)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R3 UcmCxUcsiNvppc; C:\WINDOWS\System32\drivers\UcmCxUcsiNvppc.sys [462000 2019-04-18] (NVIDIA Corporation -> NVIDIA Corporation)
U5 vwifimp; C:\Windows\System32\Drivers\vwifimp.sys [47616 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46584 2018-09-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [340008 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [61992 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
R3 XtuAcpiDriver; C:\WINDOWS\System32\drivers\XtuAcpiDriver.sys [54352 2016-08-18] (Intel Corporation -> Intel Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-05-04 10:19 - 2019-05-04 10:20 - 000043263 _____ C:\Users\User007\Downloads\FRST.txt
2019-05-04 10:19 - 2019-05-04 10:19 - 000000000 ____D C:\FRST
2019-05-04 10:18 - 2019-05-04 10:18 - 002430464 _____ (Farbar) C:\Users\User007\Downloads\FRST64.exe
2019-05-04 09:24 - 2019-05-04 09:24 - 000000000 ___HD C:\OneDriveTemp
2019-04-29 18:57 - 2019-04-29 18:57 - 000004775 _____ C:\Users\User007\Downloads\Game-of-Thrones-S08E03(0000311708).zip
2019-04-26 20:28 - 2019-04-26 20:28 - 016624232 _____ (Moritz Bunkus) C:\Users\User007\Downloads\mkvtoolnix-64-bit-33.1.0-setup.exe
2019-04-26 20:25 - 2019-04-26 20:25 - 000034249 _____ C:\Users\User007\Downloads\Robin-Hood(0000308817).zip
2019-04-26 20:24 - 2019-04-26 20:24 - 000034248 _____ C:\Users\User007\Downloads\Robin-Hood(0000308658).zip
2019-04-24 16:30 - 2019-04-24 16:30 - 000362888 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2019-04-23 20:24 - 2019-04-18 19:04 - 001006800 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2019-04-23 20:24 - 2019-04-18 19:04 - 001006800 _____ C:\WINDOWS\system32\vulkan-1.dll
2019-04-23 20:24 - 2019-04-18 19:04 - 000870096 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2019-04-23 20:24 - 2019-04-18 19:04 - 000870096 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2019-04-23 20:24 - 2019-04-18 19:04 - 000552328 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2019-04-23 20:24 - 2019-04-18 19:04 - 000456904 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2019-04-23 20:24 - 2019-04-18 19:04 - 000286416 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2019-04-23 20:24 - 2019-04-18 19:04 - 000286416 _____ C:\WINDOWS\system32\vulkaninfo.exe
2019-04-23 20:24 - 2019-04-18 19:04 - 000260304 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2019-04-23 20:24 - 2019-04-18 19:04 - 000260304 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2019-04-23 20:24 - 2019-04-18 19:03 - 011048896 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2019-04-23 20:24 - 2019-04-18 19:03 - 009485192 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 002039176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 001722064 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6443039.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 001540032 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 001470208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 001467648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6443039.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 001162176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 001134288 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 000911808 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 000821128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 000808656 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 000675024 _____ C:\WINDOWS\system32\nvofapi64.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 000631040 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 000541904 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 000522120 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2019-04-23 20:24 - 2019-04-18 19:01 - 040412368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2019-04-23 20:24 - 2019-04-18 19:01 - 035269568 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2019-04-23 20:24 - 2019-04-18 19:01 - 020187584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2019-04-23 20:24 - 2019-04-18 19:01 - 017464712 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2019-04-23 20:24 - 2019-04-18 19:01 - 005421768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2019-04-23 20:24 - 2019-04-18 19:01 - 004758736 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2019-04-23 20:24 - 2019-04-18 01:25 - 001477008 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvppcgenco64_1127831.dll
2019-04-23 20:24 - 2019-04-18 01:25 - 000462000 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\UcmCxUcsiNvppc.sys
2019-04-23 20:24 - 2019-04-18 01:25 - 000046848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll
2019-04-23 18:33 - 2019-05-03 23:37 - 000003784 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier
2019-04-23 18:33 - 2019-05-03 23:37 - 000003488 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2019-04-23 18:32 - 2019-04-23 18:32 - 021104696 _____ (Adobe) C:\Users\User007\Downloads\install_flash_player_ppapi.exe
2019-04-22 13:33 - 2019-04-22 14:24 - 562514314 _____ C:\Users\User007\Downloads\Game.of.Thrones S08E02 720p.CZ Titulky.avi
2019-04-22 12:00 - 2019-04-22 13:29 - 978405444 _____ C:\Users\User007\Downloads\Game of Thrones-S08E02-1080i. CZ titulky v obraze.https___www.ulozto.cz__partner=1174444.avi
2019-04-19 20:40 - 2019-04-22 12:12 - 000000000 ____D C:\Users\User007\AppData\Local\STAR WARS Battlefront II
2019-04-15 20:03 - 2019-04-15 21:54 - 1219070960 _____ C:\Users\User007\Downloads\Hra o truny ( Game of Thrones ) S08E01 1080i.Orig.CZ Titulky HBO.ts
2019-04-14 14:49 - 2019-04-14 14:59 - 000000000 ____D C:\Users\User007\Desktop\How To Train Your Dragon The Hidden World (2019) [BluRay] [1080p] [YTS.AM]
2019-04-12 18:05 - 2019-04-24 16:30 - 000000077 _____ C:\WINDOWS\system32\Drivers\aswSP.sys.sum
2019-04-11 19:12 - 2019-04-10 16:52 - 001734288 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6442531.dll
2019-04-11 19:12 - 2019-04-10 16:52 - 001467864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6442531.dll
2019-04-11 19:06 - 2019-04-23 20:27 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
2019-04-10 18:27 - 2019-04-10 18:27 - 026810368 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 023440896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 020815360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 019025408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 012843520 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 012139008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 009682744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-04-10 18:27 - 2019-04-10 18:27 - 007877120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 007645608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 006544824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 006071296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 005436904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 004660224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 004588536 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-04-10 18:27 - 2019-04-10 18:27 - 003904512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 003657728 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-04-10 18:27 - 2019-04-10 18:27 - 003551112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 003384832 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 002925880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2019-04-10 18:27 - 2019-04-10 18:27 - 002720256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-04-10 18:27 - 2019-04-10 18:27 - 002469376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-04-10 18:27 - 2019-04-10 18:27 - 002438368 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 002189312 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 002022304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001886208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001830200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001701888 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001672704 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001671352 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001605120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001590064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001496576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001484800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001478968 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001467344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001311744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001309696 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001256448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001253688 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-04-10 18:27 - 2019-04-10 18:27 - 001221944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001072640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001054200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-04-10 18:27 - 2019-04-10 18:27 - 001044280 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-04-10 18:27 - 2019-04-10 18:27 - 001019392 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000865784 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000793832 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000725928 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000653040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000649064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedRealitySvc.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000604008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000593920 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000543744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2019-04-10 18:27 - 2019-04-10 18:27 - 000532480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxbde40.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000474928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2019-04-10 18:27 - 2019-04-10 18:27 - 000375808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspbde40.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000352768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000346624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000340992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000301568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2019-04-10 18:27 - 2019-04-10 18:27 - 000273920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000263600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000183296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleprn.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\luafv.sys
2019-04-10 18:27 - 2019-04-10 18:27 - 000133120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Radios.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleprn.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000095544 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000090424 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxssrv.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2019-04-10 18:27 - 2019-04-10 18:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2019-04-10 18:27 - 2019-04-10 18:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2019-04-10 18:27 - 2019-04-10 18:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2019-04-10 18:27 - 2019-04-10 18:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2019-04-10 18:27 - 2019-04-10 18:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2019-04-10 18:27 - 2019-04-10 18:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2019-04-10 18:27 - 2019-04-10 18:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2019-04-06 15:23 - 2019-04-26 20:25 - 000000000 ____D C:\Users\User007\Desktop\Robin Hood (2018) [WEBRip] [1080p] [YTS.AM]
2019-04-06 09:05 - 2019-04-06 09:05 - 017513472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 015223296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 008898048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 007919104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 007883776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 007687576 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 006925824 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 006440960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 006309040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 005765120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 005205448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 004991112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 004866560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AI.MachineLearning.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 004704272 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 004527624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 004304896 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 003982848 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 003690496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 003656192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 003557888 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 003496448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AI.MachineLearning.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 003421696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 003377976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 003334496 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 003334144 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002995712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002942464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002871304 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 002842624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002777224 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002765312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002701304 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002689024 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002627384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 002592816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002346496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002275896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002073960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002042368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002017792 _____ C:\WINDOWS\system32\rdpnano.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001994768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001969464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 001918464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001892864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001860096 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001856000 ____R (The ICU Project) C:\WINDOWS\system32\icuin.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001844448 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001760768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001711104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001697752 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-04-06 09:05 - 2019-04-06 09:05 - 001687552 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001674480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001671680 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001647632 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001641400 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001616384 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001615872 ____R (The ICU Project) C:\WINDOWS\SysWOW64\icuin.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001567232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001521664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001506304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001468952 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 001459080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001458056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001395056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001370624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001360184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 001342400 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-04-06 09:05 - 2019-04-06 09:05 - 001315328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001311232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001297120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001294520 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001259320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2019-04-06 09:05 - 2019-04-06 09:05 - 001259320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 001249280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001213752 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvstore.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001191728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001179680 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 001155072 ____R (The ICU Project) C:\WINDOWS\SysWOW64\icuuc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001133568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001072424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001064448 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2019-04-06 09:05 - 2019-04-06 09:05 - 001057792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 001053192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 001047552 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001026792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001022616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001007616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001001472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000998712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000984888 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000982880 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000982528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Vpn.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000981816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000976896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000974352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvstore.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000964096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000948224 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000927232 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000926208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000909840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000897536 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000884224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000882176 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2019-04-06 09:05 - 2019-04-06 09:05 - 000877056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000874496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000871792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000855040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000850760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000845824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000840192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000828728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\conhost.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000821048 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000815616 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000809784 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000807424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000799568 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000776192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000772608 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000769536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000766480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000762880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000761280 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000757664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000756736 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyHrtfEnc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000737080 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000731648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000730936 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000730112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000712192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.MediaPlayer.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000711168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000699392 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Language.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000684032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000676352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000675096 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000672256 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000671232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\system32\objsel.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000660480 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000651792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000651064 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000640512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000620560 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000617784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000611840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000609792 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000607744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000598544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000580024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000568632 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000556544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\objsel.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000553784 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000552448 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000551936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000551936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000540672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2019-04-06 09:05 - 2019-04-06 09:05 - 000540448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000528384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000522752 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000513040 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000508208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000506880 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000506168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000505344 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_PCDisplay.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000496128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000485192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000466432 _____ (Microsoft Corporation) C:\WINDOWS\system32\slui.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000463672 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000461112 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000460800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000454144 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000447488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000424960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000421392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000414720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2019-04-06 09:05 - 2019-04-06 09:05 - 000408528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000407504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000404792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000386872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000386360 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000385536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000385024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000384312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000349184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000343984 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSrvPolicyManager.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\RADCUI.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcommdlg.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000322568 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.Workflow.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000312632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000306488 _____ (Microsoft Corporation) C:\WINDOWS\system32\computestorage.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000300032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000294912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RADCUI.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000283032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000264704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiCloudStore.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000257696 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000255128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmBroker.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedPCCSP.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000234808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerCsp.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000195896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMPushRouterCore.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.SharedPC.CredentialProvider.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageComponentsInstaller.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\spacebridge.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000169784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spacebridge.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000159744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincredui.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000159272 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000159112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winquic.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000157496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000156984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winquic.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000147496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000143880 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BitLockerCsp.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000134456 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000131384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\RjvMDMConfig.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000115360 _____ (Microsoft Corporation) C:\WINDOWS\system32\phoneactivate.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\negoexts.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvsetup.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000107832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\negoexts.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000098664 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpr.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000097808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\EduPrintProv.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000089600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvsetup.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000089336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpr.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\KdsCli.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mpsdrv.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000071208 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntlanman.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiexec.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDSPnf.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntlanman.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscapi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\credui.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcimage.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dataclen.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshhttp.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscapi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfproc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfts.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000039736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WppRecorder.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfproc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshhttp.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dataclen.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credui.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000035640 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfts.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcPing.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscdll.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmintegrator.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RpcPing.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000022016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscdll.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-05-04 10:14 - 2017-04-07 18:54 - 000000000 ____D C:\Users\User007\AppData\Local\Battle.net
2019-05-04 10:09 - 2018-09-15 09:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-05-04 09:29 - 2019-02-16 19:40 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2019-05-04 09:24 - 2017-11-20 19:36 - 000000000 ____D C:\Users\User007\AppData\Roaming\Origin
2019-05-04 09:24 - 2017-11-20 19:34 - 000000000 ____D C:\ProgramData\Origin
2019-05-04 09:24 - 2016-07-10 18:46 - 000000000 ____D C:\Users\User007\AppData\Roaming\discord
2019-05-04 09:24 - 2016-04-01 20:23 - 000000000 ____D C:\Users\User007\AppData\Local\Ubisoft Game Launcher
2019-05-04 09:24 - 2016-03-29 18:57 - 000000000 ___RD C:\Users\User007\OneDrive
2019-05-04 09:23 - 2018-11-28 21:25 - 000000000 ____D C:\ProgramData\NVIDIA
2019-05-04 09:23 - 2016-03-29 19:05 - 000000000 ____D C:\Program Files (x86)\SpeedFan
2019-05-03 23:51 - 2018-10-06 09:24 - 000003146 _____ C:\WINDOWS\System32\Tasks\MSIAfterburner
2019-05-03 23:38 - 2016-10-23 14:00 - 000000000 ____D C:\Users\User007\AppData\Roaming\TS3Client
2019-05-03 23:37 - 2018-11-28 19:53 - 000002148 _____ C:\WINDOWS\System32\Tasks\MSISW_Host
2019-05-03 23:37 - 2018-11-28 19:48 - 000003398 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-03 23:37 - 2018-11-28 19:48 - 000003196 _____ C:\WINDOWS\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-03 23:37 - 2018-11-28 19:48 - 000003152 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-03 23:37 - 2018-11-28 19:48 - 000003016 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-03 23:37 - 2018-11-28 19:48 - 000003016 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-03 23:37 - 2018-11-28 19:48 - 000003016 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-03 23:37 - 2018-11-28 19:48 - 000002984 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-03 23:37 - 2018-11-28 19:48 - 000002956 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-03 23:37 - 2018-11-28 19:48 - 000002914 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-03 23:37 - 2018-11-28 19:48 - 000002838 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-03 23:37 - 2018-11-28 19:48 - 000002744 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-03 23:37 - 2018-10-06 09:24 - 000003398 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2019-05-03 23:37 - 2018-10-06 09:24 - 000003174 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2019-05-03 23:37 - 2018-10-06 09:24 - 000002948 _____ C:\WINDOWS\System32\Tasks\KiN SF
2019-05-03 23:37 - 2018-10-06 09:24 - 000002854 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2217625539-489516872-413406719-1001
2019-05-03 23:37 - 2018-10-06 09:24 - 000002562 _____ C:\WINDOWS\System32\Tasks\SmartShare
2019-05-03 23:37 - 2018-10-06 09:24 - 000002440 _____ C:\WINDOWS\System32\Tasks\Core Temp Autostart User007
2019-05-03 23:34 - 2018-11-28 19:53 - 000002206 _____ C:\WINDOWS\System32\Tasks\MSILEDKeeper_Host
2019-05-03 23:34 - 2018-10-06 09:24 - 000000000 ____D C:\WINDOWS\System32\Tasks\AVAST Software
2019-05-03 22:50 - 2016-03-29 19:06 - 000000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server
2019-05-03 22:50 - 2016-03-29 19:06 - 000000000 ____D C:\Program Files (x86)\MSI Afterburner
2019-05-03 18:12 - 2018-11-28 19:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
2019-05-03 18:12 - 2018-11-28 19:53 - 000000000 ____D C:\MSI
2019-05-03 18:12 - 2016-03-31 20:00 - 000000000 ____D C:\Program Files (x86)\MSI
2019-05-03 17:57 - 2018-09-15 09:31 - 000000000 ____D C:\WINDOWS\INF
2019-05-03 17:52 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-05-03 17:50 - 2018-06-29 22:01 - 000000000 ____D C:\Users\Public\Logi
2019-05-02 22:14 - 2016-04-01 19:20 - 000000000 ____D C:\Users\User007\Documents\Heroes of the Storm
2019-05-02 20:24 - 2016-04-27 20:57 - 000000000 ____D C:\Users\User007\AppData\Local\CrashDumps
2019-05-02 18:48 - 2018-09-15 09:33 - 000000000 ___HD C:\Program Files\WindowsApps
2019-05-01 23:12 - 2018-10-06 09:17 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-05-01 16:52 - 2016-03-31 21:59 - 000000000 ____D C:\Users\User007\AppData\Roaming\vlc
2019-05-01 10:08 - 2017-10-18 18:36 - 000000000 ____D C:\Users\User007\AppData\Local\Packages
2019-05-01 01:28 - 2016-03-31 20:04 - 000002261 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-04-30 20:30 - 2017-04-07 18:54 - 000000000 ____D C:\Program Files (x86)\Blizzard App
2019-04-30 20:18 - 2017-11-20 19:36 - 000000000 ____D C:\Program Files (x86)\Origin
2019-04-29 20:27 - 2016-04-09 16:29 - 000000000 ____D C:\Users\User007\AppData\Roaming\uTorrent
2019-04-25 18:07 - 2017-08-03 10:13 - 000000000 ____D C:\Program Files (x86)\StarCraft II
2019-04-24 16:38 - 2017-04-07 18:53 - 000000000 ____D C:\Users\User007\AppData\Roaming\Battle.net
2019-04-24 16:37 - 2018-10-06 09:27 - 001693636 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-04-24 16:37 - 2018-09-15 19:32 - 000716776 _____ C:\WINDOWS\system32\perfh005.dat
2019-04-24 16:37 - 2018-09-15 19:32 - 000144856 _____ C:\WINDOWS\system32\perfc005.dat
2019-04-24 16:31 - 2018-10-06 09:24 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-04-24 16:30 - 2019-02-13 18:45 - 000257832 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHdsKe.sys
2019-04-24 16:30 - 2019-01-14 19:48 - 000254128 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2019-04-24 16:30 - 2019-01-07 19:37 - 000320624 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswblog.sys
2019-04-24 16:30 - 2019-01-07 19:37 - 000196000 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2019-04-24 16:30 - 2019-01-07 19:37 - 000057888 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2019-04-24 16:30 - 2019-01-07 19:37 - 000037104 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2019-04-24 16:30 - 2018-10-19 20:11 - 000042288 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2019-04-24 16:30 - 2018-10-06 09:24 - 000003990 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update
2019-04-24 16:30 - 2018-09-15 09:33 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2019-04-24 16:30 - 2018-09-15 08:09 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-04-24 16:30 - 2018-08-03 20:53 - 000476776 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2019-04-24 16:30 - 2017-11-09 19:26 - 000205400 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2019-04-24 16:30 - 2016-03-31 20:34 - 001031000 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2019-04-24 16:30 - 2016-03-31 20:34 - 000385848 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2019-04-24 16:30 - 2016-03-31 20:34 - 000220640 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2019-04-24 16:30 - 2016-03-31 20:34 - 000166848 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2019-04-24 16:30 - 2016-03-31 20:34 - 000112520 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2019-04-24 16:30 - 2016-03-31 20:34 - 000088160 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2019-04-24 16:30 - 2016-03-31 20:31 - 000000000 ____D C:\ProgramData\AVAST Software
2019-04-24 16:28 - 2018-11-28 21:25 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2019-04-23 22:38 - 2017-04-21 16:34 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2019-04-23 20:51 - 2016-03-31 20:42 - 000000000 ____D C:\Users\User007\AppData\Local\Blizzard Entertainment
2019-04-23 20:27 - 2016-03-29 19:26 - 000000000 ____D C:\Temp
2019-04-23 20:25 - 2018-11-28 21:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2019-04-23 18:32 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2019-04-23 18:32 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\Macromed
2019-04-23 18:02 - 2017-10-06 18:56 - 000000000 ____D C:\Users\User007\AppData\Roaming\steelseries-engine-3-client
2019-04-22 19:55 - 2016-09-10 10:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2019-04-22 19:55 - 2016-09-10 10:23 - 000000000 ____D C:\Program Files (x86)\Java
2019-04-22 19:54 - 2017-07-22 09:07 - 000099192 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2019-04-19 20:09 - 2016-10-23 14:00 - 000000000 ____D C:\Program Files (x86)\TeamSpeak 3 Client
2019-04-19 10:06 - 2018-04-05 18:22 - 000000000 ____D C:\Users\User007\AppData\Local\AVAST Software
2019-04-18 19:02 - 2019-03-25 17:14 - 000654272 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2019-04-18 15:57 - 2018-10-15 22:34 - 005083376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2019-04-18 15:57 - 2018-10-15 22:34 - 004340480 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2019-04-18 01:25 - 2018-10-15 19:36 - 001682368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll
2019-04-18 01:25 - 2018-10-15 19:36 - 000228608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2019-04-18 01:25 - 2018-10-15 19:03 - 000052255 _____ C:\WINDOWS\system32\nvinfo.pb
2019-04-17 23:08 - 2018-11-28 21:31 - 005432360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2019-04-17 23:08 - 2018-11-28 21:31 - 002637808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2019-04-17 23:08 - 2018-11-28 21:31 - 001767280 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2019-04-17 23:08 - 2018-11-28 21:31 - 000651248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2019-04-17 23:08 - 2018-11-28 21:31 - 000450872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2019-04-17 23:08 - 2018-11-28 21:31 - 000125424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2019-04-17 23:08 - 2018-11-28 21:31 - 000082800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2019-04-14 10:54 - 2016-04-05 19:39 - 000000000 ____D C:\Users\User007\Documents\The Witcher 3
2019-04-14 07:20 - 2018-11-28 21:31 - 008557932 _____ C:\WINDOWS\system32\nvcoproc.bin
2019-04-12 22:24 - 2018-10-06 09:19 - 000002412 _____ C:\Users\User007\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-04-11 19:07 - 2018-11-28 21:25 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-04-11 19:03 - 2018-10-06 09:17 - 000533360 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-04-10 23:18 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-04-10 18:28 - 2018-09-15 09:23 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-04-10 18:26 - 2016-03-29 19:13 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-04-10 18:24 - 2016-03-29 19:13 - 131129288 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-04-06 13:30 - 2018-09-15 09:33 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2019-04-06 13:30 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2019-04-06 13:30 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-04-06 13:30 - 2018-09-15 08:09 - 000000000 ____D C:\WINDOWS\system32\Dism

==================== Files in the root of some directories =======

2017-03-04 20:22 - 2017-03-04 20:22 - 000001167 _____ () C:\Users\User007\AppData\Roaming\trace_FilterInstaller.1.txt
2017-03-04 20:22 - 2017-03-04 20:24 - 000000905 _____ () C:\Users\User007\AppData\Roaming\trace_FilterInstaller.txt
2017-03-04 20:22 - 2017-03-04 20:24 - 000000000 _____ () C:\Users\User007\AppData\Roaming\trace_FilterInstaller.txt-CRT.txt
2016-03-29 19:10 - 2016-03-31 11:47 - 001065984 _____ () C:\Users\User007\AppData\Local\file__0.localstorage
2016-03-31 21:03 - 2016-03-31 21:03 - 000000017 _____ () C:\Users\User007\AppData\Local\resmon.resmoncfg

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ============================

Re: Velké využití RAM už po startu Windows 10

Napsal: 04 kvě 2019 10:22
od Rudy
Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi

Re: Velké využití RAM už po startu Windows 10

Napsal: 04 kvě 2019 10:28
od VelkejPitomec
# -------------------------------
# Malwarebytes AdwCleaner 7.3.0.0
# -------------------------------
# Build: 04-04-2019
# Database: 2019-04-29.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 05-04-2019
# Duration: 00:00:01
# OS: Windows 10 Home
# Cleaned: 11
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

Deleted HKCU\Software\Microsoft\Internet Explorer\DOMStorage\castplatform.com
Deleted HKCU\Software\Microsoft\Internet Explorer\DOMStorage\cdn.castplatform.com
Deleted HKCU\Software\csastats
Deleted HKLM\Software\Classes\Interface\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}
Deleted HKLM\Software\Classes\Interface\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270}
Deleted HKLM\Software\Classes\TypeLib\{1112F282-7099-4624-A439-DB29D6551552}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{B9D64D3B-BE75-4FA2-B94A-C4AE772A0146}
Deleted HKLM\Software\Wow6432Node\\Classes\Interface\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}
Deleted HKLM\Software\Wow6432Node\\Classes\Interface\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270}
Deleted HKLM\Software\Wow6432Node\\Classes\TypeLib\{1112F282-7099-4624-A439-DB29D6551552}

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [2364 octets] - [04/05/2019 11:25:59]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Re: Velké využití RAM už po startu Windows 10

Napsal: 04 kvě 2019 11:37
od Rudy
OK. Dejte nové logy FRST+Addition.

Re: Velké využití RAM už po startu Windows 10

Napsal: 04 kvě 2019 12:01
od VelkejPitomec
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02-05.2019
Ran by User007 (administrator) on DESKTOP-4S44MO1 (MSI MS-7850) (04-05-2019 12:58:10)
Running from C:\Users\User007\Desktop
Loaded Profiles: User007 (Available Profiles: User007)
Platform: Windows 10 Home Version 1809 17763.437 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Program Files\WindowsApps\Microsoft.BingWeather_4.28.10351.0_x64__8wekyb3d8bbwe\Microsoft.Msn.Weather.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.44.40.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19021.18010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19041.481.0_x64__8wekyb3d8bbwe\YourPhone.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19031.11411.0_x64__8wekyb3d8bbwe\Video.UI.exe
(ALCPU -> ALCPU) C:\Program Files\Core Temp\Core Temp.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Blizzard Entertainment, Inc. -> Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.6685\Agent.exe
(Discord Inc. -> Discord Inc.) C:\Users\User007\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\User007\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\User007\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\User007\AppData\Local\Discord\app-0.0.305\Discord.exe
(Electronic Arts, Inc. -> ) C:\Program Files (x86)\Origin\QtWebEngineProcess.exe
(Electronic Arts, Inc. -> ) C:\Program Files (x86)\Origin\QtWebEngineProcess.exe
(Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\Origin.exe
(Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.7\GoogleCrashHandler.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.7\GoogleCrashHandler64.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(Intel(R) Extreme Tuning Utility -> Intel(R) Corporation) C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe
(Logitech Inc -> Logitech Inc.) C:\Program Files\Logitech Gaming Software\ArxApplets\Discord\logitechg_discord.exe
(Logitech Inc -> Logitech Inc.) C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe
(Logitech Inc -> Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\Logitech Gaming Software\LAClient\laclient.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\User007\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.44.40.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MICRO-STAR INTERNATIONAL CO., LTD.) C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\MSI\MSIRegister\MSIRegisterService.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MysticLight\LEDKeeper.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MysticLight\MysticLight2_Service.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Paramount Software UK Ltd -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\MacriumService.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(SOKNO S.R.L. -> ) C:\Program Files (x86)\SpeedFan\speedfan.exe
(SteelSeries ApS -> SteelSeries ApS) C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe
(Ubisoft Entertainment Sweden AB -> Ubisoft) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\upc.exe
(Ubisoft Entertainment Sweden AB -> Ubisoft) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UplayWebCore.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve -> Valve Corporation) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) D:\Steam\Steam.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [18630280 2018-05-07] (Logitech Inc -> Logitech Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [261000 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9279328 2018-09-06] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe [1178400 2015-07-10] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation)
HKLM-x32\...\Run: [Live Update] => C:\Program Files (x86)\MSI\Live Update\Live Update.exe [26278576 2019-04-17] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
HKLM-x32\...\Run: [MSIRegister] => C:\MSI\MSIRegister\MSIRegister.exe [1266872 2019-03-08] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [645456 2019-04-01] (Oracle America, Inc. -> Oracle Corporation)
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION
HKU\S-1-5-21-2217625539-489516872-413406719-1001\...\Run: [Steam] => D:\Steam\steam.exe [3152160 2019-04-30] (Valve -> Valve Corporation)
HKU\S-1-5-21-2217625539-489516872-413406719-1001\...\Run: [Discord] => C:\Users\User007\AppData\Local\Discord\app-0.0.305\Discord.exe [81780056 2019-03-07] (Discord Inc. -> Discord Inc.)
HKU\S-1-5-21-2217625539-489516872-413406719-1001\...\Run: [Ubisoft Game Launcher] => C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uplay.exe [470872 2019-04-23] (Ubisoft Entertainment Sweden AB -> Ubisoft)
HKU\S-1-5-21-2217625539-489516872-413406719-1001\...\Run: [EpicGamesLauncher] => "D:\Epic Games\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe" -silent
HKU\S-1-5-21-2217625539-489516872-413406719-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3114256 2019-04-30] (Electronic Arts, Inc. -> Electronic Arts)
HKU\S-1-5-21-2217625539-489516872-413406719-1001\...\Run: [Battle.net] => C:\Program Files (x86)\Blizzard App\Battle.net.exe [1098728 2019-04-30] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
HKU\S-1-5-21-2217625539-489516872-413406719-1001\...\RunOnce: [Application Restart #3] => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
HKU\S-1-5-21-2217625539-489516872-413406719-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\Bubbles.scr [807424 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-18\...\RunOnce: [Application Restart #0] => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\system32\rtvcvfw64.dll [246272 2012-09-28] () [File not signed]
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [247296 2012-09-28] () [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\74.0.3729.131\Installer\chrmstp.exe [2019-05-01] (Google LLC -> Google Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SteelSeries Engine 3.lnk [2019-04-23]
ShortcutTarget: SteelSeries Engine 3.lnk -> C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe (SteelSeries ApS -> SteelSeries ApS)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {034AB790-3CB2-4FA1-8477-2CEC79C7621A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-03-31] (Google Inc -> Google Inc.)
Task: {071EBA52-2C1E-4839-A254-1117E790F09A} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\sdxhelper.exe [112672 2019-05-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {09FFAE7F-F312-42A7-9FEE-C4FED790107B} - System32\Tasks\KiN SF => C:\Program Files (x86)\SpeedFan\speedfan.exe [8166536 2016-06-29] (SOKNO S.R.L. -> )
Task: {0AA57232-01B2-4FB6-BA63-F658CD4F7A69} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [177376 2016-08-12] (Intel(R) Update Manager -> Intel Corporation)
Task: {0CF66747-7623-491B-A562-CE9E18FDBCDB} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4382048 2019-05-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {1738A680-D42C-4AE5-9093-2DD1765C324C} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1439368 2019-05-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {1B6C7F2F-D47B-4A4D-899E-2B9F6A557570} - System32\Tasks\SmartShare => C:\Program Files (x86)\LG Software\LG Smart Share\SmartShareStart.exe [495136 2014-12-05] (LG Electronics Inc. -> LG Electronics Inc.)
Task: {27428F8D-F1A2-49D4-9E7E-B4ACC5528761} - System32\Tasks\Intel\Intel Telemetry 2 (x86) => C:\Program Files (x86)\Intel\Telemetry 2.0\lrio.exe [1328392 2015-11-20] (Intel(R) Software -> Intel Corporation)
Task: {2B55A48E-F885-4C93-B02E-04E9A2D13E08} - System32\Tasks\Core Temp Autostart User007 => C:\Program Files\Core Temp\Core Temp.exe [998488 2019-01-08] (ALCPU -> ALCPU)
Task: {2F2D3D55-D18B-4A2A-862D-A68B35F769C5} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {33DB3DDC-9C90-4FD0-AF89-5B66DC12F467} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [648048 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {3E7B47FE-6AEE-492F-869E-CA982BCF07EA} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26196056 2019-04-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {441C93B0-C73F-4610-AAF6-9D00927C6DF1} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [590704 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {670B2624-8B08-4614-89A7-E4C008E25816} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3728752 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {68B34136-3C96-49B3-90FB-EC86819F56ED} - System32\Tasks\avast! Windows 10 Start Menu helper => c:\program files\avast software\avast\asww10mon.exe
Task: {6F07C126-A9D8-4CB1-BE92-D93A5F303717} - System32\Tasks\MSILEDKeeper_Host => C:\Program Files (x86)\MSI\MysticLight\LEDKeeper.exe [851128 2018-08-31] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
Task: {80803625-3A6C-4998-A136-9FF2CBAFF44C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-03-31] (Google Inc -> Google Inc.)
Task: {8C6ABE5A-DE49-451E-BC22-FEDF5829C28A} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-04-23] (Adobe Inc. -> Adobe)
Task: {962B14A2-0E49-4AA6-8D18-81A51DF5DFAC} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [739624 2018-04-23] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
Task: {A200FFDE-2065-4CCD-B330-8E576C09DE5E} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4382048 2019-05-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {AD60DACD-0C4A-4332-B523-2B1925587A4C} - System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {AF63F6EC-CF00-43AD-A5D1-A230DBCAE514} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2925960 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
Task: {BA5E82E0-21AD-43C7-97B9-037A6A28CE73} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26196056 2019-04-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {BAD55592-ABE5-490B-9AEA-4A85609E85AB} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {BB4051F5-D82A-42C7-AEDC-3337AFC749F8} - System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {C5522710-9919-48B4-B4B9-88AD0A0C2A0A} - System32\Tasks\MSISW_Host => C:\WINDOWS\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
Task: {CCB1CE4E-789B-4A76-90DC-B610E874F299} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [781680 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {CECF2105-B3D8-451F-8CAE-E1D26BC92ACC} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\sdxhelper.exe [112672 2019-05-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {D6F5A5AC-804B-4561-B26B-093C96B2E265} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {D8463A80-49EC-4417-BAE1-1633C5351EB1} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [849264 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {DB600790-BC3F-4267-B512-EE6B19D141E2} - System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {DE819F9A-32DB-41E2-A751-3A849B5EE2B3} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2380088 2019-04-06] (AVAST Software s.r.o. -> AVAST Software)
Task: {E64AAC8D-7318-4CD4-9A7D-154E6062FF47} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [177376 2016-08-12] (Intel(R) Update Manager -> Intel Corporation)
Task: {EB02E818-5536-4867-987B-18737FCD038C} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_171_pepper.exe [1452600 2019-04-23] (Adobe Inc. -> Adobe)
Task: {F73FF976-53C9-49D4-9235-1948BF3B591B} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1439368 2019-05-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {F744CD91-8EB1-4C72-95F2-88F8AF027020} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [781680 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {FC815288-958D-4D00-8587-30D8B6386E8F} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [849264 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{2a0de96e-6bd4-402c-a579-4c0b8f1d417d}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{a216f975-0bd8-43ec-852e-b6e636b1585c}: [DhcpNameServer] 192.168.0.1

Internet Explorer:
==================
HKU\S-1-5-21-2217625539-489516872-413406719-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2019-04-03] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2019-04-03] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\ssv.dll [2019-04-22] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2ssv.dll [2019-04-22] (Oracle America, Inc. -> Oracle Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-04-03] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-04-03] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-04-03] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-04-03] (Microsoft Corporation -> Microsoft Corporation)

FireFox:
========
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel(R) Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel(R) Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\dtplugin\npDeployJava1.dll [2019-04-22] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\plugin2\npjp2.dll [2019-04-22] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-04-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-04-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.7\npGoogleUpdate3.dll [2019-03-28] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.7\npGoogleUpdate3.dll [2019-03-28] (Google Inc -> Google LLC)
FF Plugin-x32: @videolan.org/vlc,version=2.2.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)

Chrome:
=======
CHR DefaultProfile: Default
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\User007\AppData\Local\Google\Chrome\User Data\Default [2019-05-04]
CHR Extension: (BetterTTV) - C:\Users\User007\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2018-12-06]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\User007\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2019-04-20]
CHR Extension: (Tipli do prohlížeče) - C:\Users\User007\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbnfnbehhjknomdbfhcobpgpphnlnikp [2019-03-15]
CHR Extension: (AdBlock) - C:\Users\User007\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-04-30]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\User007\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
CHR Extension: (Chrome Media Router) - C:\Users\User007\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-04-24]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6660888 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [362488 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
S3 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [6971400 2018-02-27] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11146240 2019-04-26] (Microsoft Corporation -> Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [781440 2018-12-09] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342456 2016-03-02] (FUTUREMARK INC -> Futuremark)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel® Trusted Connect Service -> Intel(R) Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [File not signed]
S3 intelsba; C:\Program Files\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe [58792 2016-01-28] (Intel(R) SBA -> Intel Corporation)
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [File not signed]
S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [177376 2016-08-12] (Intel(R) Update Manager -> Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [223520 2015-07-10] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [206472 2018-05-07] (Logitech Inc -> Logitech Inc.)
R2 MacriumService; C:\Program Files\Macrium\Common\MacriumService.exe [3894760 2017-10-19] (Paramount Software UK Ltd -> Paramount Software UK Ltd)
R2 MSIREGISTER_MR; C:\MSI\MSIRegister\MSIRegisterService.exe [2020024 2019-01-03] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [2323120 2019-04-15] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 MSI_Trigger_Service; C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe [30240 2013-09-26] (MICRO-STAR INTERNATIONAL CO., LTD. -> MICRO-STAR INTERNATIONAL CO., LTD.)
R2 MysticLight2_Service; C:\Program Files (x86)\MSI\MysticLight\MysticLight2_Service.exe [31928 2018-07-13] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [781680 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [781680 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2303792 2019-04-30] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3175216 2019-04-30] (Electronic Arts, Inc. -> Electronic Arts)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3830128 2019-03-12] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [110944 2018-09-15] (Microsoft Corporation -> Microsoft Corporation)
R2 XTU3SERVICE; C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe [18264 2017-02-23] (Intel(R) Extreme Tuning Utility -> Intel(R) Corporation)
S3 DAUpdaterSvc; D:\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe [X]
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvTelemetry\plugins" -r

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 ALSysIO; C:\Users\User007\AppData\Local\Temp\ALSysIO64.sys [46384 2019-05-04] (ALCPU (Arthur Liberman) -> Arthur Liberman) <==== ATTENTION
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [37104 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [205400 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [254128 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [196000 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R0 aswblog; C:\WINDOWS\System32\drivers\aswblog.sys [320624 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [57888 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [15488 2019-01-07] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswHdsKe; C:\WINDOWS\System32\drivers\aswHdsKe.sys [257832 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42288 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [166848 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [112520 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [88160 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [1031000 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [476776 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [220640 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [385848 2019-04-24] (AVAST Software s.r.o. -> AVAST Software)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2018-08-14] (Disc Soft Ltd -> Disc Soft Ltd)
S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2018-08-14] (Disc Soft Ltd -> Disc Soft Ltd)
R2 iocbios2; C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [37064 2016-08-24] (Intel Corporation -> Intel Corporation)
R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech -> Logitech)
R3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [67736 2018-05-07] (Logitech Inc -> Logitech Inc.)
R3 NTIOLib_MysticLight; C:\Program Files (x86)\MSI\MysticLight\Lib\NTIOLib_X64.sys [14288 2017-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_ed316ebc2bdc1c66\nvlddmkm.sys [21657024 2019-04-18] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-03-28] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-03-19] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [66792 2018-10-03] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1122200 2018-08-30] (Realtek Semiconductor Corp. -> Realtek )
R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
R3 ssdevfactory; C:\WINDOWS\System32\drivers\ssdevfactory.sys [46776 2018-12-21] (SteelSeries ApS -> )
R3 sshid; C:\WINDOWS\System32\drivers\sshid.sys [48032 2018-12-21] (SteelSeries ApS -> SteelSeries ApS)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R3 UcmCxUcsiNvppc; C:\WINDOWS\System32\drivers\UcmCxUcsiNvppc.sys [462000 2019-04-18] (NVIDIA Corporation -> NVIDIA Corporation)
U5 vwifimp; C:\Windows\System32\Drivers\vwifimp.sys [47616 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46584 2018-09-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [340008 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [61992 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
R3 XtuAcpiDriver; C:\WINDOWS\System32\drivers\XtuAcpiDriver.sys [54352 2016-08-18] (Intel Corporation -> Intel Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-05-04 12:58 - 2019-05-04 12:58 - 000037370 _____ C:\Users\User007\Desktop\FRST.txt
2019-05-04 11:25 - 2019-05-04 11:26 - 000000000 ____D C:\AdwCleaner
2019-05-04 11:24 - 2019-05-04 11:24 - 007025360 _____ (Malwarebytes) C:\Users\User007\Downloads\adwcleaner_7.3.exe
2019-05-04 10:32 - 2019-05-04 10:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Macrium
2019-05-04 10:20 - 2019-05-04 10:22 - 000135247 _____ C:\Users\User007\Downloads\Addition.txt
2019-05-04 10:19 - 2019-05-04 12:58 - 000000000 ____D C:\FRST
2019-05-04 10:19 - 2019-05-04 10:22 - 000107981 _____ C:\Users\User007\Downloads\FRST.txt
2019-05-04 10:18 - 2019-05-04 10:18 - 002430464 _____ (Farbar) C:\Users\User007\Desktop\FRST64.exe
2019-05-04 09:24 - 2019-05-04 09:24 - 000000000 ___HD C:\OneDriveTemp
2019-04-26 20:28 - 2019-04-26 20:28 - 016624232 _____ (Moritz Bunkus) C:\Users\User007\Downloads\mkvtoolnix-64-bit-33.1.0-setup.exe
2019-04-24 16:30 - 2019-04-24 16:30 - 000362888 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2019-04-23 20:24 - 2019-04-18 19:04 - 001006800 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2019-04-23 20:24 - 2019-04-18 19:04 - 001006800 _____ C:\WINDOWS\system32\vulkan-1.dll
2019-04-23 20:24 - 2019-04-18 19:04 - 000870096 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2019-04-23 20:24 - 2019-04-18 19:04 - 000870096 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2019-04-23 20:24 - 2019-04-18 19:04 - 000552328 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2019-04-23 20:24 - 2019-04-18 19:04 - 000456904 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2019-04-23 20:24 - 2019-04-18 19:04 - 000286416 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2019-04-23 20:24 - 2019-04-18 19:04 - 000286416 _____ C:\WINDOWS\system32\vulkaninfo.exe
2019-04-23 20:24 - 2019-04-18 19:04 - 000260304 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2019-04-23 20:24 - 2019-04-18 19:04 - 000260304 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2019-04-23 20:24 - 2019-04-18 19:03 - 011048896 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2019-04-23 20:24 - 2019-04-18 19:03 - 009485192 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 002039176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 001722064 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6443039.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 001540032 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 001470208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 001467648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6443039.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 001162176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 001134288 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 000911808 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 000821128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 000808656 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 000675024 _____ C:\WINDOWS\system32\nvofapi64.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 000631040 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 000541904 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2019-04-23 20:24 - 2019-04-18 19:02 - 000522120 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2019-04-23 20:24 - 2019-04-18 19:01 - 040412368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2019-04-23 20:24 - 2019-04-18 19:01 - 035269568 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2019-04-23 20:24 - 2019-04-18 19:01 - 020187584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2019-04-23 20:24 - 2019-04-18 19:01 - 017464712 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2019-04-23 20:24 - 2019-04-18 19:01 - 005421768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2019-04-23 20:24 - 2019-04-18 19:01 - 004758736 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2019-04-23 20:24 - 2019-04-18 01:25 - 001477008 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvppcgenco64_1127831.dll
2019-04-23 20:24 - 2019-04-18 01:25 - 000462000 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\UcmCxUcsiNvppc.sys
2019-04-23 20:24 - 2019-04-18 01:25 - 000046848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll
2019-04-23 18:33 - 2019-05-04 12:56 - 000003784 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier
2019-04-23 18:33 - 2019-05-04 12:56 - 000003488 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2019-04-23 18:32 - 2019-04-23 18:32 - 021104696 _____ (Adobe) C:\Users\User007\Downloads\install_flash_player_ppapi.exe
2019-04-19 20:40 - 2019-04-22 12:12 - 000000000 ____D C:\Users\User007\AppData\Local\STAR WARS Battlefront II
2019-04-14 14:49 - 2019-04-14 14:59 - 000000000 ____D C:\Users\User007\Desktop\How To Train Your Dragon The Hidden World (2019) [BluRay] [1080p] [YTS.AM]
2019-04-12 18:05 - 2019-04-24 16:30 - 000000077 _____ C:\WINDOWS\system32\Drivers\aswSP.sys.sum
2019-04-11 19:12 - 2019-04-10 16:52 - 001734288 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6442531.dll
2019-04-11 19:12 - 2019-04-10 16:52 - 001467864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6442531.dll
2019-04-11 19:06 - 2019-04-23 20:27 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
2019-04-10 18:27 - 2019-04-10 18:27 - 026810368 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 023440896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 020815360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 019025408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 012843520 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 012139008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 009682744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-04-10 18:27 - 2019-04-10 18:27 - 007877120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 007645608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 006544824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 006071296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 005436904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 004660224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 004588536 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-04-10 18:27 - 2019-04-10 18:27 - 003904512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 003657728 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-04-10 18:27 - 2019-04-10 18:27 - 003551112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 003384832 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 002925880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2019-04-10 18:27 - 2019-04-10 18:27 - 002720256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-04-10 18:27 - 2019-04-10 18:27 - 002469376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-04-10 18:27 - 2019-04-10 18:27 - 002438368 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 002189312 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 002022304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001886208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001830200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001701888 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001672704 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001671352 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001605120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001590064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001496576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001484800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001478968 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001467344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001311744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001309696 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001256448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001253688 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-04-10 18:27 - 2019-04-10 18:27 - 001221944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001072640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 001054200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-04-10 18:27 - 2019-04-10 18:27 - 001044280 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-04-10 18:27 - 2019-04-10 18:27 - 001019392 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000865784 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000793832 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000725928 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000653040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000649064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedRealitySvc.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000604008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000593920 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000543744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2019-04-10 18:27 - 2019-04-10 18:27 - 000532480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxbde40.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000474928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2019-04-10 18:27 - 2019-04-10 18:27 - 000375808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspbde40.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000352768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000346624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000340992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000301568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2019-04-10 18:27 - 2019-04-10 18:27 - 000273920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000263600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000183296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleprn.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\luafv.sys
2019-04-10 18:27 - 2019-04-10 18:27 - 000133120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Radios.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleprn.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000095544 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000090424 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxssrv.dll
2019-04-10 18:27 - 2019-04-10 18:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2019-04-10 18:27 - 2019-04-10 18:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2019-04-10 18:27 - 2019-04-10 18:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2019-04-10 18:27 - 2019-04-10 18:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2019-04-10 18:27 - 2019-04-10 18:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2019-04-10 18:27 - 2019-04-10 18:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2019-04-10 18:27 - 2019-04-10 18:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2019-04-10 18:27 - 2019-04-10 18:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2019-04-06 15:23 - 2019-04-26 20:25 - 000000000 ____D C:\Users\User007\Desktop\Robin Hood (2018) [WEBRip] [1080p] [YTS.AM]
2019-04-06 09:05 - 2019-04-06 09:05 - 017513472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 015223296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 008898048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 007919104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 007883776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 007687576 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 006925824 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 006440960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 006309040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 005765120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 005205448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 004991112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 004866560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AI.MachineLearning.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 004704272 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 004527624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 004304896 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 003982848 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 003690496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 003656192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 003557888 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 003496448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AI.MachineLearning.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 003421696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 003377976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 003334496 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 003334144 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002995712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002942464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002871304 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 002842624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002777224 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002765312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002701304 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002689024 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002627384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 002592816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002346496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002275896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002073960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002042368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 002017792 _____ C:\WINDOWS\system32\rdpnano.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001994768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001969464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 001918464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001892864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001860096 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001856000 ____R (The ICU Project) C:\WINDOWS\system32\icuin.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001844448 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001760768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001711104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001697752 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-04-06 09:05 - 2019-04-06 09:05 - 001687552 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001674480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001671680 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001647632 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001641400 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001616384 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001615872 ____R (The ICU Project) C:\WINDOWS\SysWOW64\icuin.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001567232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001521664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001506304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001468952 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 001459080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001458056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001395056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001370624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001360184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 001342400 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-04-06 09:05 - 2019-04-06 09:05 - 001315328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001311232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001297120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001294520 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001259320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2019-04-06 09:05 - 2019-04-06 09:05 - 001259320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 001249280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001213752 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvstore.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001191728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001179680 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 001155072 ____R (The ICU Project) C:\WINDOWS\SysWOW64\icuuc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001133568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001072424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001064448 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2019-04-06 09:05 - 2019-04-06 09:05 - 001057792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 001053192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 001047552 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001026792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001022616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001007616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 001001472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000998712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000984888 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000982880 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000982528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Vpn.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000981816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000976896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000974352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvstore.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000964096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000948224 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000927232 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000926208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000909840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000897536 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000884224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000882176 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2019-04-06 09:05 - 2019-04-06 09:05 - 000877056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000874496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000871792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000855040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000850760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000845824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000840192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000828728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\conhost.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000821048 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000815616 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000809784 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000807424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000799568 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000776192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000772608 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000769536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000766480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000762880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000761280 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000757664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000756736 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyHrtfEnc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000737080 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000731648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000730936 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000730112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000712192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.MediaPlayer.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000711168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000699392 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Language.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000684032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000676352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000675096 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000672256 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000671232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\system32\objsel.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000660480 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000651792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000651064 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000640512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000620560 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000617784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000611840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000609792 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000607744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000598544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000580024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000568632 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000556544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\objsel.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000553784 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000552448 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000551936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000551936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000540672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2019-04-06 09:05 - 2019-04-06 09:05 - 000540448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000528384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000522752 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000513040 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000508208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000506880 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000506168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000505344 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_PCDisplay.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000496128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000485192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000466432 _____ (Microsoft Corporation) C:\WINDOWS\system32\slui.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000463672 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000461112 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000460800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000454144 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000447488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000424960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000421392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000414720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2019-04-06 09:05 - 2019-04-06 09:05 - 000408528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000407504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000404792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000386872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000386360 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000385536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000385024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000384312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000349184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000343984 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSrvPolicyManager.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\RADCUI.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcommdlg.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000322568 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.Workflow.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000312632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000306488 _____ (Microsoft Corporation) C:\WINDOWS\system32\computestorage.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000300032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000294912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RADCUI.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000283032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000264704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiCloudStore.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000257696 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000255128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmBroker.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedPCCSP.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000234808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerCsp.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000195896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMPushRouterCore.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.SharedPC.CredentialProvider.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageComponentsInstaller.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\spacebridge.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000169784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spacebridge.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000159744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincredui.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000159272 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000159112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winquic.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000157496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000156984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winquic.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000147496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000143880 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BitLockerCsp.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000134456 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000131384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\RjvMDMConfig.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000115360 _____ (Microsoft Corporation) C:\WINDOWS\system32\phoneactivate.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\negoexts.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvsetup.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000107832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\negoexts.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000098664 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpr.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000097808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\EduPrintProv.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000089600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvsetup.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000089336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpr.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\KdsCli.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mpsdrv.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000071208 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntlanman.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiexec.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDSPnf.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntlanman.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscapi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\credui.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcimage.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dataclen.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshhttp.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscapi.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfproc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfts.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000039736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WppRecorder.sys
2019-04-06 09:05 - 2019-04-06 09:05 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfproc.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshhttp.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dataclen.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credui.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000035640 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfts.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcPing.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscdll.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmintegrator.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RpcPing.exe
2019-04-06 09:05 - 2019-04-06 09:05 - 000022016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscdll.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2019-04-06 09:05 - 2019-04-06 09:05 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-05-04 12:57 - 2017-04-07 18:54 - 000000000 ____D C:\Users\User007\AppData\Local\Battle.net
2019-05-04 12:56 - 2018-11-28 19:53 - 000002206 _____ C:\WINDOWS\System32\Tasks\MSILEDKeeper_Host
2019-05-04 12:56 - 2018-11-28 19:53 - 000002148 _____ C:\WINDOWS\System32\Tasks\MSISW_Host
2019-05-04 12:56 - 2018-11-28 19:48 - 000003398 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-04 12:56 - 2018-11-28 19:48 - 000003196 _____ C:\WINDOWS\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-04 12:56 - 2018-11-28 19:48 - 000003152 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-04 12:56 - 2018-11-28 19:48 - 000003016 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-04 12:56 - 2018-11-28 19:48 - 000003016 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-04 12:56 - 2018-11-28 19:48 - 000003016 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-04 12:56 - 2018-11-28 19:48 - 000002984 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-04 12:56 - 2018-11-28 19:48 - 000002956 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-04 12:56 - 2018-11-28 19:48 - 000002914 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-04 12:56 - 2018-11-28 19:48 - 000002838 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-04 12:56 - 2018-11-28 19:48 - 000002744 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-04 12:56 - 2018-10-06 09:24 - 000003398 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2019-05-04 12:56 - 2018-10-06 09:24 - 000003174 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2019-05-04 12:56 - 2018-10-06 09:24 - 000002948 _____ C:\WINDOWS\System32\Tasks\KiN SF
2019-05-04 12:56 - 2018-10-06 09:24 - 000002854 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2217625539-489516872-413406719-1001
2019-05-04 12:56 - 2018-10-06 09:24 - 000002562 _____ C:\WINDOWS\System32\Tasks\SmartShare
2019-05-04 12:56 - 2018-10-06 09:24 - 000002440 _____ C:\WINDOWS\System32\Tasks\Core Temp Autostart User007
2019-05-04 12:56 - 2018-10-06 09:24 - 000002430 _____ C:\WINDOWS\System32\Tasks\MSIAfterburner
2019-05-04 12:56 - 2018-10-06 09:24 - 000000000 ____D C:\WINDOWS\System32\Tasks\AVAST Software
2019-05-04 12:54 - 2018-09-15 09:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-05-04 12:09 - 2016-03-29 19:06 - 000000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server
2019-05-04 12:09 - 2016-03-29 19:06 - 000000000 ____D C:\Program Files (x86)\MSI Afterburner
2019-05-04 11:37 - 2018-10-06 09:17 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-05-04 11:32 - 2018-10-06 09:27 - 001693636 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-05-04 11:32 - 2018-09-15 19:32 - 000716776 _____ C:\WINDOWS\system32\perfh005.dat
2019-05-04 11:32 - 2018-09-15 19:32 - 000144856 _____ C:\WINDOWS\system32\perfc005.dat
2019-05-04 11:32 - 2018-09-15 09:31 - 000000000 ____D C:\WINDOWS\INF
2019-05-04 11:28 - 2017-11-20 19:36 - 000000000 ____D C:\Users\User007\AppData\Roaming\Origin
2019-05-04 11:27 - 2018-11-28 21:25 - 000000000 ____D C:\ProgramData\NVIDIA
2019-05-04 11:27 - 2017-11-20 19:34 - 000000000 ____D C:\ProgramData\Origin
2019-05-04 11:27 - 2016-04-01 20:23 - 000000000 ____D C:\Users\User007\AppData\Local\Ubisoft Game Launcher
2019-05-04 11:27 - 2016-03-29 19:05 - 000000000 ____D C:\Program Files (x86)\SpeedFan
2019-05-04 11:27 - 2016-03-29 18:57 - 000000000 ___RD C:\Users\User007\OneDrive
2019-05-04 11:26 - 2018-10-06 09:24 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-05-04 11:26 - 2018-09-15 08:09 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-05-04 11:23 - 2016-07-10 18:46 - 000000000 ____D C:\Users\User007\AppData\Roaming\discord
2019-05-04 10:32 - 2016-04-01 21:18 - 000000000 ____D C:\Program Files\Macrium
2019-05-04 10:32 - 2016-04-01 20:58 - 000000000 ____D C:\ProgramData\Macrium
2019-05-04 09:29 - 2019-02-16 19:40 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2019-05-03 23:38 - 2016-10-23 14:00 - 000000000 ____D C:\Users\User007\AppData\Roaming\TS3Client
2019-05-03 18:12 - 2018-11-28 19:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
2019-05-03 18:12 - 2018-11-28 19:53 - 000000000 ____D C:\MSI
2019-05-03 18:12 - 2016-03-31 20:00 - 000000000 ____D C:\Program Files (x86)\MSI
2019-05-03 17:52 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-05-03 17:50 - 2018-06-29 22:01 - 000000000 ____D C:\Users\Public\Logi
2019-05-02 22:14 - 2016-04-01 19:20 - 000000000 ____D C:\Users\User007\Documents\Heroes of the Storm
2019-05-02 20:24 - 2016-04-27 20:57 - 000000000 ____D C:\Users\User007\AppData\Local\CrashDumps
2019-05-02 18:48 - 2018-09-15 09:33 - 000000000 ___HD C:\Program Files\WindowsApps
2019-05-01 16:52 - 2016-03-31 21:59 - 000000000 ____D C:\Users\User007\AppData\Roaming\vlc
2019-05-01 10:08 - 2017-10-18 18:36 - 000000000 ____D C:\Users\User007\AppData\Local\Packages
2019-05-01 01:28 - 2016-03-31 20:04 - 000002261 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-04-30 20:30 - 2017-04-07 18:54 - 000000000 ____D C:\Program Files (x86)\Blizzard App
2019-04-30 20:18 - 2017-11-20 19:36 - 000000000 ____D C:\Program Files (x86)\Origin
2019-04-29 20:27 - 2016-04-09 16:29 - 000000000 ____D C:\Users\User007\AppData\Roaming\uTorrent
2019-04-25 18:07 - 2017-08-03 10:13 - 000000000 ____D C:\Program Files (x86)\StarCraft II
2019-04-24 16:38 - 2017-04-07 18:53 - 000000000 ____D C:\Users\User007\AppData\Roaming\Battle.net
2019-04-24 16:30 - 2019-02-13 18:45 - 000257832 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHdsKe.sys
2019-04-24 16:30 - 2019-01-14 19:48 - 000254128 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2019-04-24 16:30 - 2019-01-07 19:37 - 000320624 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswblog.sys
2019-04-24 16:30 - 2019-01-07 19:37 - 000196000 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2019-04-24 16:30 - 2019-01-07 19:37 - 000057888 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2019-04-24 16:30 - 2019-01-07 19:37 - 000037104 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2019-04-24 16:30 - 2018-10-19 20:11 - 000042288 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2019-04-24 16:30 - 2018-10-06 09:24 - 000003990 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update
2019-04-24 16:30 - 2018-09-15 09:33 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2019-04-24 16:30 - 2018-08-03 20:53 - 000476776 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2019-04-24 16:30 - 2017-11-09 19:26 - 000205400 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2019-04-24 16:30 - 2016-03-31 20:34 - 001031000 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2019-04-24 16:30 - 2016-03-31 20:34 - 000385848 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2019-04-24 16:30 - 2016-03-31 20:34 - 000220640 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2019-04-24 16:30 - 2016-03-31 20:34 - 000166848 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2019-04-24 16:30 - 2016-03-31 20:34 - 000112520 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2019-04-24 16:30 - 2016-03-31 20:34 - 000088160 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2019-04-24 16:30 - 2016-03-31 20:31 - 000000000 ____D C:\ProgramData\AVAST Software
2019-04-24 16:28 - 2018-11-28 21:25 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2019-04-23 22:38 - 2017-04-21 16:34 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2019-04-23 20:51 - 2016-03-31 20:42 - 000000000 ____D C:\Users\User007\AppData\Local\Blizzard Entertainment
2019-04-23 20:27 - 2016-03-29 19:26 - 000000000 ____D C:\Temp
2019-04-23 20:25 - 2018-11-28 21:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2019-04-23 18:32 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2019-04-23 18:32 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\Macromed
2019-04-23 18:02 - 2017-10-06 18:56 - 000000000 ____D C:\Users\User007\AppData\Roaming\steelseries-engine-3-client
2019-04-22 19:55 - 2016-09-10 10:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2019-04-22 19:55 - 2016-09-10 10:23 - 000000000 ____D C:\Program Files (x86)\Java
2019-04-22 19:54 - 2017-07-22 09:07 - 000099192 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2019-04-19 20:09 - 2016-10-23 14:00 - 000000000 ____D C:\Program Files (x86)\TeamSpeak 3 Client
2019-04-19 10:06 - 2018-04-05 18:22 - 000000000 ____D C:\Users\User007\AppData\Local\AVAST Software
2019-04-18 19:02 - 2019-03-25 17:14 - 000654272 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2019-04-18 15:57 - 2018-10-15 22:34 - 005083376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2019-04-18 15:57 - 2018-10-15 22:34 - 004340480 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2019-04-18 01:25 - 2018-10-15 19:36 - 001682368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll
2019-04-18 01:25 - 2018-10-15 19:36 - 000228608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2019-04-18 01:25 - 2018-10-15 19:03 - 000052255 _____ C:\WINDOWS\system32\nvinfo.pb
2019-04-17 23:08 - 2018-11-28 21:31 - 005432360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2019-04-17 23:08 - 2018-11-28 21:31 - 002637808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2019-04-17 23:08 - 2018-11-28 21:31 - 001767280 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2019-04-17 23:08 - 2018-11-28 21:31 - 000651248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2019-04-17 23:08 - 2018-11-28 21:31 - 000450872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2019-04-17 23:08 - 2018-11-28 21:31 - 000125424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2019-04-17 23:08 - 2018-11-28 21:31 - 000082800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2019-04-14 10:54 - 2016-04-05 19:39 - 000000000 ____D C:\Users\User007\Documents\The Witcher 3
2019-04-14 07:20 - 2018-11-28 21:31 - 008557932 _____ C:\WINDOWS\system32\nvcoproc.bin
2019-04-12 22:24 - 2018-10-06 09:19 - 000002412 _____ C:\Users\User007\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-04-11 19:07 - 2018-11-28 21:25 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-04-11 19:03 - 2018-10-06 09:17 - 000533360 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-04-10 23:18 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-04-10 18:28 - 2018-09-15 09:23 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-04-10 18:26 - 2016-03-29 19:13 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-04-10 18:24 - 2016-03-29 19:13 - 131129288 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-04-06 13:30 - 2018-09-15 09:33 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2019-04-06 13:30 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2019-04-06 13:30 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-04-06 13:30 - 2018-09-15 08:09 - 000000000 ____D C:\WINDOWS\system32\Dism

==================== Files in the root of some directories =======

2017-03-04 20:22 - 2017-03-04 20:22 - 000001167 _____ () C:\Users\User007\AppData\Roaming\trace_FilterInstaller.1.txt
2017-03-04 20:22 - 2017-03-04 20:24 - 000000905 _____ () C:\Users\User007\AppData\Roaming\trace_FilterInstaller.txt
2017-03-04 20:22 - 2017-03-04 20:24 - 000000000 _____ () C:\Users\User007\AppData\Roaming\trace_FilterInstaller.txt-CRT.txt
2016-03-29 19:10 - 2016-03-31 11:47 - 001065984 _____ () C:\Users\User007\AppData\Local\file__0.localstorage
2016-03-31 21:03 - 2016-03-31 21:03 - 000000017 _____ () C:\Users\User007\AppData\Local\resmon.resmoncfg

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ============================

Re: Velké využití RAM už po startu Windows 10

Napsal: 04 kvě 2019 17:03
od Rudy
Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {034AB790-3CB2-4FA1-8477-2CEC79C7621A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-03-31] (Google Inc -> Google Inc.)
Task: {2F2D3D55-D18B-4A2A-862D-A68B35F769C5} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {80803625-3A6C-4998-A136-9FF2CBAFF44C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-03-31] (Google Inc -> Google Inc.)
R3 ALSysIO; C:\Users\User007\AppData\Local\Temp\ALSysIO64.sys [46384 2019-05-04] (ALCPU (Arthur Liberman) -> Arthur Liberman) <==== ATTENTION
C:\WINDOWS\LastGood.Tmp
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
AlternateDataStreams: C:\Users\Public\AppData:CSM [474]
AlternateDataStreams: C:\Users\User007\AppData\Local\Temp:$DATA​ [34]
FirewallRules: [{93ED4251-F05A-4416-B4B3-114DD5F54C4F}] => (Allow) D:\Steam\steamapps\common\Borderlands_2_RU\Binaries\Win32\Launcher.exe No File
FirewallRules: [{AD193C71-06B1-43ED-94B9-F9BCC4D2ADD0}] => (Allow) D:\Steam\steamapps\common\Borderlands_2_RU\Binaries\Win32\Launcher.exe No File
FirewallRules: [UDP Query User{42D73B5E-4EE0-442D-942E-402E1AF1F30E}D:\heroes of the storm\versions\base55010\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base55010\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{61638494-A6D7-4EE4-B71A-2FFF4E1346C7}D:\heroes of the storm\versions\base55010\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base55010\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{544C5F46-6EE7-4D72-A785-03E8F10713D9}C:\program files (x86)\blizzard app\battle.net.8965\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.8965\battle.net.exe No File
FirewallRules: [TCP Query User{384C46CC-E1AC-4A6C-A046-4985E6E3B42D}C:\program files (x86)\blizzard app\battle.net.8965\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.8965\battle.net.exe No File
FirewallRules: [UDP Query User{6356C0DC-DEFD-4FE5-B11F-EB8B5B7A55EC}D:\heroes of the storm\versions\base54968\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base54968\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{0B2C9478-BA1E-401E-AB17-A8A2810BD3A3}D:\heroes of the storm\versions\base54968\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base54968\heroesofthestorm_x64.exe No File
FirewallRules: [{C63C689D-D38D-4066-97D5-54E71D65117F}] => (Allow) D:\Steam\steamapps\common\ShadowOfMordor\x64\ShadowOfMordor.exe No File
FirewallRules: [{E13EABD1-8831-48B2-8379-8956851E1A7A}] => (Allow) D:\Steam\steamapps\common\ShadowOfMordor\x64\ShadowOfMordor.exe No File
FirewallRules: [UDP Query User{80B4869E-D969-42A0-8B4A-F7207F540CA9}D:\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{E1B8329C-E8A0-4434-B84E-A19C08CE160C}D:\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{DF304F6A-7284-4893-A349-48AABE3943D6}D:\heroes of the storm public test\versions\base54098\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm public test\versions\base54098\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{E2C073FA-D960-4634-93F2-2EAABF7A7ABE}D:\heroes of the storm public test\versions\base54098\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm public test\versions\base54098\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{B9943833-6067-42FF-80C0-2B5AD49F3AA7}D:\heroes of the storm\versions\base53965\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base53965\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{28434CF1-D5AF-4F4A-AB15-0A089D74FD86}D:\heroes of the storm\versions\base53965\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base53965\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{D572A364-E9AB-4946-968B-1FB03C3A5FBF}C:\program files (x86)\blizzard app\battle.net.8839\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.8839\battle.net.exe No File
FirewallRules: [TCP Query User{FD6B80F8-386D-41A2-8075-85F5C3A50F24}C:\program files (x86)\blizzard app\battle.net.8839\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.8839\battle.net.exe No File
FirewallRules: [UDP Query User{6038D37A-17E5-48B2-8A5C-E56BE7C966A3}C:\program files (x86)\blizzard app\battle.net.8800\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.8800\battle.net.exe No File
FirewallRules: [TCP Query User{04C17D35-F0C7-4782-97F6-CF61C8B1943C}C:\program files (x86)\blizzard app\battle.net.8800\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.8800\battle.net.exe No File
FirewallRules: [UDP Query User{EAE1FF82-6F77-4527-92D8-432B89AF4119}D:\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{239EED84-C64A-4A84-AAA9-27240F289659}D:\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{4E11A0D7-0852-4603-A111-D9CDFACBC82D}D:\heroes of the storm\versions\base53275\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base53275\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{F9F6A69E-0175-4C26-8CB0-C2FB2735489F}D:\heroes of the storm\versions\base53275\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base53275\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{7360E178-3952-421A-9BAF-3AE42382E0FA}C:\program files (x86)\blizzard app\battle.net.8733\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.8733\battle.net.exe No File
FirewallRules: [TCP Query User{DCA10392-69AA-45E1-AC08-20DE52B99148}C:\program files (x86)\blizzard app\battle.net.8733\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.8733\battle.net.exe No File
FirewallRules: [UDP Query User{F4DC6A2D-B9EB-44AE-AA76-8C422E47F8A7}D:\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{DA796052-9457-43F3-8F7E-A909CBE05C2B}D:\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{70BD1BC6-008B-4310-90F1-C0BFEE941CE4}D:\heroes of the storm\versions\base52860\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base52860\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{50567A54-4B6C-49D9-920D-03BF34BD8CAB}D:\heroes of the storm\versions\base52860\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base52860\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{2E2A2B04-447C-454E-B75D-C841BFE1D6D3}D:\heroes of the storm public test\versions\base52561\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm public test\versions\base52561\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{5E2C0E77-2162-4DB1-9850-79FF5543BB9F}D:\heroes of the storm public test\versions\base52561\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm public test\versions\base52561\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{991AA792-C019-49A1-9027-FDC4EC4E0252}C:\users\user007\desktop\release (1) - bot\release\pokemobbot.exe] => (Allow) C:\users\user007\desktop\release (1) - bot\release\pokemobbot.exe No File
FirewallRules: [TCP Query User{731A2D69-6AD4-4CD5-B61A-64848BA28B2D}C:\users\user007\desktop\release (1) - bot\release\pokemobbot.exe] => (Allow) C:\users\user007\desktop\release (1) - bot\release\pokemobbot.exe No File
FirewallRules: [UDP Query User{7FF32E6D-6886-4B57-8CDE-5325C51D29C3}C:\users\user007\desktop\release (3)\release\pokemobbot.exe] => (Allow) C:\users\user007\desktop\release (3)\release\pokemobbot.exe No File
FirewallRules: [TCP Query User{59D9245F-946A-4454-BEDD-8C516A261BA4}C:\users\user007\desktop\release (3)\release\pokemobbot.exe] => (Allow) C:\users\user007\desktop\release (3)\release\pokemobbot.exe No File
FirewallRules: [UDP Query User{15A431F8-EDD9-46EE-8F06-A798C52B4457}C:\users\user007\downloads\release(1)\release\pokemobbot.exe] => (Allow) C:\users\user007\downloads\release(1)\release\pokemobbot.exe No File
FirewallRules: [TCP Query User{24C208E1-D165-4440-9B47-C325B0449589}C:\users\user007\downloads\release(1)\release\pokemobbot.exe] => (Allow) C:\users\user007\downloads\release(1)\release\pokemobbot.exe No File
FirewallRules: [UDP Query User{7C6FEAE2-B8B1-46D2-904A-717F51CABA64}C:\users\user007\downloads\release(1)\release\necrobot.exe] => (Allow) C:\users\user007\downloads\release(1)\release\necrobot.exe No File
FirewallRules: [TCP Query User{7FB85AF0-9122-4C0A-99C7-D4F8FD79C21A}C:\users\user007\downloads\release(1)\release\necrobot.exe] => (Allow) C:\users\user007\downloads\release(1)\release\necrobot.exe No File
FirewallRules: [UDP Query User{A8A0E4BB-C2A6-4C75-A937-86A764476E02}D:\heroes of the storm\versions\base44941\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base44941\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{792E2010-51AC-44DD-81D1-047026212B6C}D:\heroes of the storm\versions\base44941\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base44941\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{88C7B57C-BE6F-4845-88CA-676FA54ECB90}C:\users\user007\downloads\release\release\necrobot.exe] => (Allow) C:\users\user007\downloads\release\release\necrobot.exe No File
FirewallRules: [TCP Query User{ABFAC4C8-E67D-4AF3-BD03-3021C2BFA8C3}C:\users\user007\downloads\release\release\necrobot.exe] => (Allow) C:\users\user007\downloads\release\release\necrobot.exe No File
FirewallRules: [UDP Query User{6A41080C-3F66-4B4C-B600-6D5CCD6811B6}C:\users\user007\downloads\release\release\pogo.necrobot.cli.exe] => (Allow) C:\users\user007\downloads\release\release\pogo.necrobot.cli.exe No File
FirewallRules: [TCP Query User{C0CB5C4C-0B85-4E7B-A83D-F076FAE3F458}C:\users\user007\downloads\release\release\pogo.necrobot.cli.exe] => (Allow) C:\users\user007\downloads\release\release\pogo.necrobot.cli.exe No File
FirewallRules: [UDP Query User{41F8D7E4-CF16-4A7F-BF11-75E1B9CDC3A5}C:\users\user007\desktop\release\pogo.necrobot.cli.exe] => (Allow) C:\users\user007\desktop\release\pogo.necrobot.cli.exe No File
FirewallRules: [TCP Query User{D312967E-A4C3-4047-85CC-DEDEE94A4264}C:\users\user007\desktop\release\pogo.necrobot.cli.exe] => (Allow) C:\users\user007\desktop\release\pogo.necrobot.cli.exe No File
FirewallRules: [{C2B37AC6-2B0D-43EB-850A-F360159F2680}] => (Allow) D:\Steam\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe No File
FirewallRules: [{D31E38EF-5F00-4EE6-8F13-1FC7065385FE}] => (Allow) D:\Steam\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe No File
FirewallRules: [{F56A4C09-7DD3-4762-976D-66CD9AEC593D}] => (Allow) D:\Steam\steamapps\common\Limbo\limbo.exe (Playdead) [File not signed]
FirewallRules: [{C8786C0D-775F-4133-AAD2-1AF928AEC1C1}] => (Allow) D:\Steam\steamapps\common\Limbo\limbo.exe (Playdead) [File not signed]
FirewallRules: [{5AE182CF-505E-4688-ADB3-08414E8EE4F4}] => (Allow) D:\Ubisoft Game Launcher\games\Prince of Persia Sands of Time\POP.EXE No File
FirewallRules: [{D6B80623-0591-491F-9E3E-5DF5A4264939}] => (Allow) D:\Ubisoft Game Launcher\games\Prince of Persia Sands of Time\POP.EXE No File
FirewallRules: [{87B9F128-F163-4DC2-BEB4-AF9FF7F145D3}] => (Allow) D:\Ubisoft Game Launcher\games\Prince of Persia Sands of Time\PrinceOfPersia.EXE No File
FirewallRules: [{06FB3A39-5AEE-4B3B-86BE-F1D92F0AA648}] => (Allow) D:\Ubisoft Game Launcher\games\Prince of Persia Sands of Time\PrinceOfPersia.EXE No File
FirewallRules: [UDP Query User{5064E8D1-347E-44BA-85D1-148B7330938D}D:\heroes of the storm\versions\base43170\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base43170\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{9F1A606F-E418-4C55-BD94-EC145125DA6B}D:\heroes of the storm\versions\base43170\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base43170\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{7D4FB377-99D1-44EC-848D-A3DC59357250}D:\heroes of the storm\versions\base42958\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base42958\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{1FA87237-E286-4129-B781-50AC20490680}D:\heroes of the storm\versions\base42958\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base42958\heroesofthestorm_x64.exe No File
FirewallRules: [{B0A3A0D5-A5A6-48A5-814B-EB2E7126D1BD}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe No File
FirewallRules: [{7ED515D3-283A-44A0-872B-A59DE57D09AF}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe No File
FirewallRules: [UDP Query User{F7355B4F-AA9F-47C2-AAE8-5C7B6040251C}D:\heroes of the storm\versions\base42506\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base42506\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{66F2BFC7-1592-4B5C-9957-49894E771D3F}D:\heroes of the storm\versions\base42506\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base42506\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{78E0A2B6-D4BC-4024-8227-73F916DE5915}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [TCP Query User{C33CEE36-AB58-425A-8C72-AABFF9845D6F}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [UDP Query User{113B88CB-B2A8-4207-951A-E6C79E7EE691}D:\heroes of the storm\versions\base42406\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base42406\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{9A8FD8C6-6166-4BC2-A032-3307767285BB}D:\heroes of the storm\versions\base42406\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base42406\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{541884BF-4ED3-43BA-B82B-6C8ED42CB245}D:\heroes of the storm\versions\base42273\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base42273\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{63882FC1-D08A-4370-9A97-C2CED4000346}D:\heroes of the storm\versions\base42273\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base42273\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{122A59A7-1549-4C68-9EEF-7835E2ADBB69}D:\strongdc++\strongdc.exe] => (Allow) D:\strongdc++\strongdc.exe No File
FirewallRules: [TCP Query User{75F3CFC7-9353-4156-A9C3-0389E9E33E22}D:\strongdc++\strongdc.exe] => (Allow) D:\strongdc++\strongdc.exe No File
FirewallRules: [{F167CA82-6557-4B27-8054-82D5589114D7}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe No File
FirewallRules: [{BC7DDC40-DCA0-4EE6-B4CD-8FB44A692A91}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe No File
FirewallRules: [{9B7F9652-1A8B-49F1-8C8F-4299774804D3}] => (Allow) D:\League of Legends\lol.launcher.admin.exe No File
FirewallRules: [{6C814803-6736-4833-AB71-3296E5B272D2}] => (Allow) D:\League of Legends\lol.launcher.exe No File
FirewallRules: [UDP Query User{43CCEA1F-74EF-4FC6-BFF2-0EA170B83B77}D:\heroes of the storm\versions\base41810\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base41810\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{E57FF360-4379-4316-BF12-4A8A37831E0B}D:\heroes of the storm\versions\base41810\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base41810\heroesofthestorm_x64.exe No File
FirewallRules: [{34911A19-15CC-44F1-A454-1B54946C74F8}] => (Allow) D:\Steam\bin\steamwebhelper.exe No File
FirewallRules: [{2A33C403-022D-46CC-A830-46653826937B}] => (Allow) D:\Steam\bin\steamwebhelper.exe No File
FirewallRules: [TCP Query User{16A054A3-ADCD-4FB0-8BBE-FF0C0AD904BF}C:\users\user007\desktop\release_8.8.2016\release 8.8.2016\pokemobbot.exe] => (Allow) C:\users\user007\desktop\release_8.8.2016\release 8.8.2016\pokemobbot.exe No File
FirewallRules: [UDP Query User{48E30B23-2CC9-4FD3-9A9B-E0C99459EF7F}C:\users\user007\desktop\release_8.8.2016\release 8.8.2016\pokemobbot.exe] => (Allow) C:\users\user007\desktop\release_8.8.2016\release 8.8.2016\pokemobbot.exe No File
FirewallRules: [TCP Query User{0D88083F-830C-4D10-9003-D62726B6C218}C:\users\user007\desktop\release_8.9.2016\release 8.9.2016\pokemobbot.exe] => (Allow) C:\users\user007\desktop\release_8.9.2016\release 8.9.2016\pokemobbot.exe No File
FirewallRules: [UDP Query User{ACCF0DA5-DE0E-408D-8DC9-DFBEFCB960D7}C:\users\user007\desktop\release_8.9.2016\release 8.9.2016\pokemobbot.exe] => (Allow) C:\users\user007\desktop\release_8.9.2016\release 8.9.2016\pokemobbot.exe No File
FirewallRules: [TCP Query User{D46B8912-D13E-4E49-A0E4-4B90C9D83460}H:\release_8.9.2016\release 8.9.2016\pokemobbot.exe] => (Allow) H:\release_8.9.2016\release 8.9.2016\pokemobbot.exe No File
FirewallRules: [UDP Query User{59F2EEAA-C41A-44A2-95C8-648151E712CC}H:\release_8.9.2016\release 8.9.2016\pokemobbot.exe] => (Allow) H:\release_8.9.2016\release 8.9.2016\pokemobbot.exe No File
FirewallRules: [TCP Query User{0453CE09-1F03-4650-A57D-ED5919A9B5D2}D:\heroes of the storm\versions\base45228\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base45228\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{D3C407B8-6037-47B2-8774-7BEA4D943C0A}D:\heroes of the storm\versions\base45228\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base45228\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{F3F2D4AF-AF51-4AFA-89EF-FCA9E338F8A4}C:\users\user007\downloads\release\pokemobbot.exe] => (Allow) C:\users\user007\downloads\release\pokemobbot.exe No File
FirewallRules: [UDP Query User{91A978FC-8AD1-4FBD-85A4-01FA8215A624}C:\users\user007\downloads\release\pokemobbot.exe] => (Allow) C:\users\user007\downloads\release\pokemobbot.exe No File
FirewallRules: [TCP Query User{F0CCC162-70D4-427D-8841-D1F6587099D9}C:\users\user007\downloads\release (1)\pokemobbot.exe] => (Allow) C:\users\user007\downloads\release (1)\pokemobbot.exe No File
FirewallRules: [UDP Query User{C04A1ABD-B128-4DBA-81C2-C3BFEE123343}C:\users\user007\downloads\release (1)\pokemobbot.exe] => (Allow) C:\users\user007\downloads\release (1)\pokemobbot.exe No File
FirewallRules: [{740EA148-C9F1-485E-900F-FCE999AAA56F}] => (Allow) D:\Ubisoft Game Launcher\games\Rayman Origins\gu.exe No File
FirewallRules: [{BB929041-6DBE-4A8F-861D-AA6102829FE3}] => (Allow) D:\Ubisoft Game Launcher\games\Rayman Origins\gu.exe No File
FirewallRules: [{E0F82B81-58DC-4C8A-A97B-E3CEEB0E544D}] => (Allow) D:\Ubisoft Game Launcher\games\Rayman Origins\Rayman Origins.exe No File
FirewallRules: [{6F5F8696-E64B-427C-8935-DDD01A20622E}] => (Allow) D:\Ubisoft Game Launcher\games\Rayman Origins\Rayman Origins.exe No File
FirewallRules: [TCP Query User{8DDA124A-43A8-423D-B9A9-0168660047C8}C:\users\user007\downloads\downloader_warcraft3_reign_of_chaos_engb.exe] => (Allow) C:\users\user007\downloads\downloader_warcraft3_reign_of_chaos_engb.exe No File
FirewallRules: [UDP Query User{C2FC54B9-AB0E-43E3-B667-C4D3099ECE5C}C:\users\user007\downloads\downloader_warcraft3_reign_of_chaos_engb.exe] => (Allow) C:\users\user007\downloads\downloader_warcraft3_reign_of_chaos_engb.exe No File
FirewallRules: [TCP Query User{9234D1CE-583A-4B7B-A363-E07F031C436C}C:\users\user007\downloads\downloader_warcraft3_the_frozen_throne_engb.exe] => (Allow) C:\users\user007\downloads\downloader_warcraft3_the_frozen_throne_engb.exe No File
FirewallRules: [UDP Query User{3925A71C-7B64-4A6F-9547-482881F3D660}C:\users\user007\downloads\downloader_warcraft3_the_frozen_throne_engb.exe] => (Allow) C:\users\user007\downloads\downloader_warcraft3_the_frozen_throne_engb.exe No File
FirewallRules: [{4A2FCAEB-F8C8-4DE8-8712-B6A1526C620C}] => (Allow) D:\Steam\steamapps\common\EvolveGame\bin64_SteamRetail\Evolve.exe No File
FirewallRules: [{71E64453-0A63-4C88-9807-E3898E900573}] => (Allow) D:\Steam\steamapps\common\EvolveGame\bin64_SteamRetail\Evolve.exe No File
FirewallRules: [TCP Query User{72132E22-C918-4908-9352-23B6DF06474E}D:\heroes of the storm\versions\base49076\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base49076\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{30DD6515-E0E6-4887-8689-17FDE6FCB8D6}D:\heroes of the storm\versions\base49076\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base49076\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{7375A639-A903-4D90-82B9-366BDA302790}D:\steam\steamapps\common\terraria\terrariaserver.exe] => (Allow) D:\steam\steamapps\common\terraria\terrariaserver.exe (Re-Logic) [File not signed]
FirewallRules: [UDP Query User{55E7F118-3EF8-4C64-9460-23A3829B624B}D:\steam\steamapps\common\terraria\terrariaserver.exe] => (Allow) D:\steam\steamapps\common\terraria\terrariaserver.exe (Re-Logic) [File not signed]
FirewallRules: [TCP Query User{2BC1C940-5701-40C7-B1E7-04FA36DBBE5E}D:\heroes of the storm\versions\base49278\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base49278\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{F601CFFD-88E7-49CE-8665-C2DE59EE6AC5}D:\heroes of the storm\versions\base49278\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base49278\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{7499E9D6-80EA-4CB4-8EDB-26C26647841B}C:\program files (x86)\battle.net\battle.net.8265\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8265\battle.net.exe No File
FirewallRules: [UDP Query User{30C0F3D9-5337-4EA3-800B-3F29D6D54E8A}C:\program files (x86)\battle.net\battle.net.8265\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8265\battle.net.exe No File
FirewallRules: [TCP Query User{DCEC9B96-6C2C-45AD-9938-E4DA05BCC925}D:\diablo iii\x64\diablo iii64.exe] => (Allow) D:\diablo iii\x64\diablo iii64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{B2978D0F-66D8-481D-B48E-938F70524929}D:\diablo iii\x64\diablo iii64.exe] => (Allow) D:\diablo iii\x64\diablo iii64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{1964AF89-9FDF-461E-90A3-A759CCC10BAF}C:\program files (x86)\battle.net\battle.net.8288\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8288\battle.net.exe No File
FirewallRules: [UDP Query User{710D6D35-8191-46AD-A797-96BBDD0B46CE}C:\program files (x86)\battle.net\battle.net.8288\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8288\battle.net.exe No File
FirewallRules: [TCP Query User{812C0B13-899B-4CD4-9E1D-DEA24CCFF658}C:\program files (x86)\battle.net\battle.net.8293\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8293\battle.net.exe No File
FirewallRules: [UDP Query User{A2DE9BA1-9A50-4F64-AEF4-EEDACE395A23}C:\program files (x86)\battle.net\battle.net.8293\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8293\battle.net.exe No File
FirewallRules: [TCP Query User{BA88F8B7-5366-4020-A99B-395C1CC2D9F4}D:\heroes of the storm\versions\base49747\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base49747\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{89B9BB9D-39F5-4E25-9044-DA7E4DAD6877}D:\heroes of the storm\versions\base49747\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base49747\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{3248E888-46E7-4DB9-BA0F-DC611E587CFE}D:\heroes of the storm\versions\base49907\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base49907\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{A5A3FB6A-FB6A-462F-B46A-A2BE3A7DDE9F}D:\heroes of the storm\versions\base49907\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base49907\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{0B0BD055-AE86-49E3-B877-E3DD8C1C120A}D:\heroes of the storm\versions\base50286\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base50286\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{5783AD30-DA5D-4498-8771-212BB1B0CEFD}D:\heroes of the storm\versions\base50286\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base50286\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{D93046ED-091D-4411-80C6-1435A683B366}D:\ubisoft game launcher\games\rayman origins\rayman origins.exe] => (Allow) D:\ubisoft game launcher\games\rayman origins\rayman origins.exe No File
FirewallRules: [UDP Query User{C93E46A9-9018-4930-A5BE-F158CAA41092}D:\ubisoft game launcher\games\rayman origins\rayman origins.exe] => (Allow) D:\ubisoft game launcher\games\rayman origins\rayman origins.exe No File
FirewallRules: [TCP Query User{A97E3303-7C09-4A49-B428-FA1F45099718}D:\heroes of the storm\versions\base50441\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base50441\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{8C2A9EDC-6DFB-4E3C-BC1C-322A72E79440}D:\heroes of the storm\versions\base50441\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base50441\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{F4FD134D-735F-43A3-83E8-104E77CC1701}C:\program files (x86)\battle.net\battle.net.8394\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8394\battle.net.exe No File
FirewallRules: [UDP Query User{3F90D0AF-99E1-4A5F-874D-CB865B3A5FC4}C:\program files (x86)\battle.net\battle.net.8394\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8394\battle.net.exe No File
FirewallRules: [TCP Query User{1B34BA0C-490A-4E9B-9996-AAD7FF7424E2}C:\program files (x86)\battle.net\battle.net.8423\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8423\battle.net.exe No File
FirewallRules: [UDP Query User{8923668F-EA94-4DF2-957C-1DF65001158B}C:\program files (x86)\battle.net\battle.net.8423\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8423\battle.net.exe No File
FirewallRules: [TCP Query User{87A1435F-D5AB-4953-B9A2-8CE348A6DD6C}D:\heroes of the storm\versions\base50950\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base50950\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{BA74F366-80E6-4565-B3E3-667130410A70}D:\heroes of the storm\versions\base50950\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base50950\heroesofthestorm_x64.exe No File
FirewallRules: [{BBE8D6AB-15B7-4554-8D42-883493311411}] => (Allow) D:\Nová složka\Tom Clancy's The Division\TheDivision.exe No File
FirewallRules: [{FB856A36-70C0-473C-94B8-F3B943667EC6}] => (Allow) D:\Ubisoft games\Assassin's Creed III\AC3SP.exe No File
FirewallRules: [{4EB2128D-25DD-41CF-AC44-1DF15D2C6890}] => (Allow) D:\Ubisoft games\Assassin's Creed III\AC3SP.exe No File
FirewallRules: [{1D83AB88-9C23-4509-8E45-DC25EAD1EB19}] => (Allow) D:\Ubisoft games\Assassin's Creed III\AC3MP.exe No File
FirewallRules: [{7B2931A9-24D3-4E5C-94B5-EACBC853B47E}] => (Allow) D:\Ubisoft games\Assassin's Creed III\AC3MP.exe No File
FirewallRules: [{A8BB2F5B-92DB-4D3D-BD17-55BDA581A3A9}] => (Allow) D:\Steam\steamapps\common\PuzzleQuest2\PuzzleQuest2.exe () [File not signed]
FirewallRules: [{6ED75705-EEB2-4A01-930F-E8306F77119C}] => (Allow) D:\Steam\steamapps\common\PuzzleQuest2\PuzzleQuest2.exe () [File not signed]
FirewallRules: [TCP Query User{B0228E2E-EAE7-4A32-B172-0AC9F8C1DAD2}D:\heroes of the storm\versions\base51375\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base51375\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{B9D1CE44-C62A-45BE-934C-F217B601C7CB}D:\heroes of the storm\versions\base51375\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base51375\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{04ACC86B-8FE9-41BC-8AB2-3E2F0BD12947}C:\program files (x86)\battle.net\battle.net.8518\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8518\battle.net.exe No File
FirewallRules: [UDP Query User{EA8AF8D2-F6E7-46ED-8D04-5C1A563F973D}C:\program files (x86)\battle.net\battle.net.8518\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8518\battle.net.exe No File
FirewallRules: [TCP Query User{5730CBE2-A7B8-449D-87B1-963E16BFDE74}D:\heroes of the storm\versions\base51779\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base51779\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{6B59D17C-3876-4A1E-9F4E-C032A77DE326}D:\heroes of the storm\versions\base51779\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base51779\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{EF89007E-C796-4870-92F5-A41E467FCCE1}C:\program files (x86)\battle.net\battle.net.8554\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8554\battle.net.exe No File
FirewallRules: [UDP Query User{BE4BDEAC-E62C-446A-9F31-B764027FD59A}C:\program files (x86)\battle.net\battle.net.8554\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8554\battle.net.exe No File
FirewallRules: [TCP Query User{436E8BDF-1738-4902-8FE8-85FECD57FF7C}D:\heroes of the storm\versions\base52008\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base52008\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{D9FFF4D8-8BB5-4DAD-A2A8-AF1B816C494F}D:\heroes of the storm\versions\base52008\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base52008\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{3DADB428-84BE-4FE6-B9A4-645EC55478AF}D:\heroes of the storm\versions\base52124\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base52124\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{0938E052-EA19-4052-9996-C9BD861BC8DC}D:\heroes of the storm\versions\base52124\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base52124\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{A7520F60-985A-4150-9ADE-93B7B2B4EBE7}C:\program files (x86)\blizzard app\battle.net.8600\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.8600\battle.net.exe No File
FirewallRules: [UDP Query User{E215CBF5-B8DE-4A75-98BF-4683A6F35E29}C:\program files (x86)\blizzard app\battle.net.8600\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.8600\battle.net.exe No File
FirewallRules: [TCP Query User{0BB6CEF6-DED5-4EA6-B0DE-D6CDAB74668A}D:\heroes of the storm\versions\base52351\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base52351\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{D33D64AC-9AE5-40E7-BFF7-5A5BCEB3876E}D:\heroes of the storm\versions\base52351\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base52351\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{09052050-B321-4EF0-AB5C-F8BA7FC60A24}C:\program files (x86)\blizzard app\battle.net.8657\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.8657\battle.net.exe No File
FirewallRules: [UDP Query User{9F17D201-9316-42C2-9509-C37F45106DAF}C:\program files (x86)\blizzard app\battle.net.8657\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.8657\battle.net.exe No File
FirewallRules: [TCP Query User{000DBB5D-8070-41C0-89D7-30615E91A41F}D:\heroes of the storm\versions\base52647\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base52647\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{6C096652-8D16-4962-A88D-C129101F355F}D:\heroes of the storm\versions\base52647\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base52647\heroesofthestorm_x64.exe No File
FirewallRules: [{1B66AA5C-1BBF-4812-98D2-FFC842851002}] => (Allow) D:\Steam\steamapps\common\ShadowOfWar\x64\ShadowOfWar.exe (WB Games Inc. -> WB Games, Inc.)
FirewallRules: [{D28D171A-E4A8-4646-BDC4-AFC86E2213F9}] => (Allow) D:\Steam\steamapps\common\ShadowOfWar\x64\ShadowOfWar.exe (WB Games Inc. -> WB Games, Inc.)
FirewallRules: [{87BBD4DA-826A-46C7-A3EF-DF38B43CB2C3}] => (Allow) D:\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe No File
FirewallRules: [{A42D5BAD-CC3F-4E2D-B6E1-9D9E8C8BD44C}] => (Allow) D:\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe No File
FirewallRules: [TCP Query User{2D379503-968B-45D4-96FF-9B9A285B4BFD}D:\heroes of the storm\versions\base58795\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base58795\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{0E900554-D3B5-4DF6-876C-2B9EE3BF4A09}D:\heroes of the storm\versions\base58795\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base58795\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{EF670EA1-A8E4-4045-8739-1787BF1498A7}C:\program files (x86)\blizzard app\battle.net.9526\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.9526\battle.net.exe No File
FirewallRules: [UDP Query User{954C2865-C86B-4B76-AA25-593A5D3F3041}C:\program files (x86)\blizzard app\battle.net.9526\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.9526\battle.net.exe No File
FirewallRules: [TCP Query User{778F3786-5082-4DB5-B08B-7FA507903C27}D:\heroes of the storm\versions\base59239\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base59239\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{FE42C476-A58F-4F63-B10A-DACBC49C43C8}D:\heroes of the storm\versions\base59239\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base59239\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{CA23D60B-429F-418D-807A-C6C240D2AE5F}D:\heroes of the storm\versions\base59657\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base59657\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{EA82EECD-1996-4DC8-9E3C-4E53A70FB489}D:\heroes of the storm\versions\base59657\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base59657\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{DB59CE41-0549-484B-952E-67F2FAFA8B5C}D:\heroes of the storm\versions\base59799\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base59799\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{1804BD5D-6599-4016-AC53-CA006459B76C}D:\heroes of the storm\versions\base59799\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base59799\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{F0199650-8A67-4992-9FFB-7E71126F1C46}D:\heroes of the storm\versions\base59988\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base59988\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{C9A63013-76E3-41C9-BE92-C98D430A4BD8}D:\heroes of the storm\versions\base59988\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base59988\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{01D0E02A-D1BD-4EDD-8697-A17D8B4760D8}C:\program files (x86)\starcraft ii\versions\base60321\sc2_x64.exe] => (Allow) C:\program files (x86)\starcraft ii\versions\base60321\sc2_x64.exe No File
FirewallRules: [UDP Query User{8DFB1123-D03C-4AB7-B415-2D742162F859}C:\program files (x86)\starcraft ii\versions\base60321\sc2_x64.exe] => (Allow) C:\program files (x86)\starcraft ii\versions\base60321\sc2_x64.exe No File
FirewallRules: [TCP Query User{0CBFB194-0511-4EE4-8B93-1AF87B2A10F9}D:\heroes of the storm\versions\base60399\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base60399\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{8FB46018-AC9A-4E5A-A43B-F50F3B0F55EF}D:\heroes of the storm\versions\base60399\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base60399\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{7F88D63F-44E5-4B4B-B761-88E2C0EEA4BB}D:\heroes of the storm\versions\base60522\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base60522\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{38E57C98-61DD-4518-908A-67F8C137BDA8}D:\heroes of the storm\versions\base60522\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base60522\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{096FC07F-382A-4B2B-A526-5940564A0F6C}D:\heroes of the storm\versions\base60632\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base60632\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{B8068610-4B45-4BE5-90C1-E4F1B2857D64}D:\heroes of the storm\versions\base60632\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base60632\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{7BD2F056-C181-43D7-BCDD-5E7F16C984F3}D:\heroes of the storm\versions\base60821\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base60821\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{4A5E5BF3-9A49-4319-9872-F4FF4B4B8AA1}D:\heroes of the storm\versions\base60821\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base60821\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{3B3A6183-5001-4AAC-8149-68F96BC892F2}D:\ubisoft games\assassin's creed iii\ac3sp.exe] => (Allow) D:\ubisoft games\assassin's creed iii\ac3sp.exe No File
FirewallRules: [UDP Query User{AC205C09-435B-4E0F-B20B-6D15D31FEE97}D:\ubisoft games\assassin's creed iii\ac3sp.exe] => (Allow) D:\ubisoft games\assassin's creed iii\ac3sp.exe No File
FirewallRules: [TCP Query User{FC352D25-0EB9-4817-BEDF-A67570155167}D:\ubisoft games\assassin's creed iii\ac3mp.exe] => (Block) D:\ubisoft games\assassin's creed iii\ac3mp.exe No File
FirewallRules: [UDP Query User{4A42F362-1F27-4D2F-AF75-1FDFE82E0747}D:\ubisoft games\assassin's creed iii\ac3mp.exe] => (Block) D:\ubisoft games\assassin's creed iii\ac3mp.exe No File
FirewallRules: [TCP Query User{5794629F-D912-48C6-BB91-C6FF5C32FFB6}D:\heroes of the storm\versions\base61129\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base61129\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{80165ED4-16D2-4DD3-A3D4-B90EF6F3B77E}D:\heroes of the storm\versions\base61129\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base61129\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{3C58DF06-A789-4C53-8FE4-7F3FB81C260C}D:\heroes of the storm\versions\base61361\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base61361\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{AB3232DF-E603-4AC0-9810-01955DB34F57}D:\heroes of the storm\versions\base61361\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base61361\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{6D4CA6A6-A243-49DA-BF14-A1441DEAC124}D:\heroes of the storm\versions\base61552\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base61552\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{09E2FBD6-110C-4970-B525-A6FD63EC2A1D}D:\heroes of the storm\versions\base61552\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base61552\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{887E3DF6-C23A-4C4A-90A5-F1C625E1B786}D:\heroes of the storm\versions\base62119\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base62119\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{00D74579-3FF5-4392-B5F5-268E2B4FBE27}D:\heroes of the storm\versions\base62119\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base62119\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{117ED6AC-8448-493E-942B-585CA8DFB713}D:\heroes of the storm\versions\base62212\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base62212\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{3C6BDC0E-423C-475B-8D54-AFAB6D0DF8F1}D:\heroes of the storm\versions\base62212\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base62212\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{28812A4C-4F61-4641-836C-90D3C212AADD}D:\heroes of the storm\versions\base62424\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base62424\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{92659253-8BCC-4002-B76C-B8BE38BD2ACF}D:\heroes of the storm\versions\base62424\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base62424\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{7925E4FE-97A9-4D14-83AE-11DBA2509E44}D:\epic games\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) D:\epic games\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe No File
FirewallRules: [UDP Query User{69C3811E-CD8E-4A52-9010-EAC35BDADC38}D:\epic games\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) D:\epic games\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe No File
FirewallRules: [TCP Query User{3FB1BF42-C3C2-41E6-9B97-4121FEB4E8BB}D:\epic games\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\epic games\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe No File
FirewallRules: [UDP Query User{A966F5A2-C8CF-46FA-BF39-77683F6E488D}D:\epic games\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\epic games\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe No File
FirewallRules: [TCP Query User{EF369FFE-33FB-4269-A000-B2ED712FB9FF}D:\epic games\fortnite\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\epic games\fortnite\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe No File
FirewallRules: [UDP Query User{6380C527-F893-4A3F-9A2D-57328977B85A}D:\epic games\fortnite\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\epic games\fortnite\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe No File
FirewallRules: [TCP Query User{82727FCB-93AD-4750-AABA-394579BBE984}D:\heroes of the storm\versions\base62833\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base62833\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{D3867AE4-825F-498B-B0A5-0B90296702F6}D:\heroes of the storm\versions\base62833\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base62833\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{5793053F-BEB6-4345-BAD3-43B60352C0F6}D:\heroes of the storm\versions\base63070\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base63070\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{C4EE66A4-5BAE-45BF-9AF7-9AC1A387BDBA}D:\heroes of the storm\versions\base63070\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base63070\heroesofthestorm_x64.exe No File
FirewallRules: [{A7A22C1A-913B-441C-8805-1AF236316A95}] => (Allow) D:\Steam\steamapps\common\Resident Evil 4\Bin32\bio4.exe No File
FirewallRules: [{197B4B93-CF68-417A-A093-A8D480192F96}] => (Allow) D:\Steam\steamapps\common\Resident Evil 4\Bin32\bio4.exe No File
FirewallRules: [TCP Query User{904A717A-BA1D-4160-BAE2-FCFE30F3F8C3}D:\heroes of the storm\versions\base63402\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base63402\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{BE87592B-7DD8-4612-ADAD-4E6CC5306828}D:\heroes of the storm\versions\base63402\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base63402\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{33F416F8-51E6-4EE3-BA82-66500D96A35B}D:\heroes of the storm\versions\base63635\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base63635\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{654AEC83-F428-44D0-8C34-A6EAB5CA778A}D:\heroes of the storm\versions\base63635\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base63635\heroesofthestorm_x64.exe No File
FirewallRules: [{0D988A3E-8CC1-4042-850A-92EF841A98F9}] => (Allow) D:\Steam\steamapps\common\Mafia\Mafia\Game.exe No File
FirewallRules: [{E0A29E4F-C57D-41E1-8000-4A9212B248DE}] => (Allow) D:\Steam\steamapps\common\Mafia\Mafia\Game.exe No File
FirewallRules: [{20A70371-ADD8-4BCF-8919-636FF46E9581}] => (Allow) D:\Steam\steamapps\common\Mafia\Mafia\Setup.exe No File
FirewallRules: [{6D037C3F-2DE1-44B0-BC1E-33818C9F66A9}] => (Allow) D:\Steam\steamapps\common\Mafia\Mafia\Setup.exe No File
FirewallRules: [TCP Query User{D982119E-74A1-4C0E-B136-3CDCA34F34EF}C:\program files (x86)\starcraft ii\versions\base63454\sc2_x64.exe] => (Allow) C:\program files (x86)\starcraft ii\versions\base63454\sc2_x64.exe No File
FirewallRules: [UDP Query User{A68C9FFD-AFB4-4EFE-A723-25DAD286AF1C}C:\program files (x86)\starcraft ii\versions\base63454\sc2_x64.exe] => (Allow) C:\program files (x86)\starcraft ii\versions\base63454\sc2_x64.exe No File
FirewallRules: [TCP Query User{82795002-B420-4D0C-9FD3-4AB135C88C6C}D:\heroes of the storm\versions\base64100\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base64100\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{F4EA4DD0-E613-42F5-87F9-CD8C758E97F4}D:\heroes of the storm\versions\base64100\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base64100\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{8832C8AB-E56E-4D1E-BD17-7EBBF1036F2D}D:\heroes of the storm\versions\base64129\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base64129\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{AC9D4E61-168A-4C63-8C09-B464D1A677D4}D:\heroes of the storm\versions\base64129\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base64129\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{E8591DC7-CF87-4AA8-87B4-84B57C9C9989}C:\programdata\battle.net\agent\agent.6160\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.6160\agent.exe No File
FirewallRules: [UDP Query User{5297EB7B-3333-46A1-8B7B-C55D71ED8D3D}C:\programdata\battle.net\agent\agent.6160\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.6160\agent.exe No File
FirewallRules: [TCP Query User{37E2876E-4516-4C5A-99DA-5C4B7A3A0280}D:\heroes of the storm\versions\base64455\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base64455\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{CF9DB37F-CD99-4649-B4AD-8DF10A2520AD}D:\heroes of the storm\versions\base64455\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base64455\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{541271F8-CF37-44E5-A918-49F53F7BC016}D:\heroes of the storm\versions\base69350\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base69350\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{38227AAB-9380-465A-B40E-3FFC95BC9C31}D:\heroes of the storm\versions\base69350\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base69350\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{B44D0F8C-FCAF-4928-BCA6-F765E65D9B65}D:\heroes of the storm\versions\base69790\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base69790\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{5193C11C-2D74-4F31-92C0-A91508B0A1F2}D:\heroes of the storm\versions\base69790\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base69790\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{4FDBED34-BDAA-4189-B786-6441CACDCB82}D:\heroes of the storm\versions\base69823\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base69823\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{B5AA01CB-69FF-4D1B-AD31-A93300A025F6}D:\heroes of the storm\versions\base69823\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base69823\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{80FAB4A4-D965-4CD6-8154-2A6485469D15}D:\destiny 2\destiny2.exe] => (Allow) D:\destiny 2\destiny2.exe No File
FirewallRules: [UDP Query User{4EA3460C-AB0E-4321-A690-A23DFF5CEB5D}D:\destiny 2\destiny2.exe] => (Allow) D:\destiny 2\destiny2.exe No File
FirewallRules: [TCP Query User{305EC580-7F8D-40B0-83C8-077E5EE35B06}D:\heroes of the storm\versions\base70200\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base70200\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{552B3F79-9795-4C2D-B5F1-353492B7C190}D:\heroes of the storm\versions\base70200\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base70200\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{4E64D7B2-6782-4333-8C34-06A3029D1A45}D:\heroes of the storm\versions\base70616\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base70616\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{E2E2D14C-F867-4800-A899-208A26281BB1}D:\heroes of the storm\versions\base70616\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base70616\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{A5417B9E-2ABB-443C-8019-1946D0059A5C}D:\heroes of the storm\versions\base71138\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base71138\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{5A4DC5EA-9DED-47A1-BB2D-021444E80F4F}D:\heroes of the storm\versions\base71138\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base71138\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{942C6320-9743-4860-8276-60DE6BD8E236}D:\lol\rads\projects\league_client\releases\0.0.0.178\deploy\leagueclient.exe] => (Allow) D:\lol\rads\projects\league_client\releases\0.0.0.178\deploy\leagueclient.exe No File
FirewallRules: [UDP Query User{3C92D566-C440-46A7-A51C-693DBAA9CFC9}D:\lol\rads\projects\league_client\releases\0.0.0.178\deploy\leagueclient.exe] => (Allow) D:\lol\rads\projects\league_client\releases\0.0.0.178\deploy\leagueclient.exe No File
FirewallRules: [TCP Query User{A3987470-644D-4307-994C-53B64C6B3994}D:\heroes of the storm\versions\base71449\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base71449\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{A69FBD12-7755-47BD-84BA-58D9F1F9B5B5}D:\heroes of the storm\versions\base71449\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base71449\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{578B9342-0367-472F-AB6B-3C27CB9B927E}D:\heroes of the storm\versions\base71931\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base71931\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{8EE75125-972C-41A8-B7FF-2CE05B2AB305}D:\heroes of the storm\versions\base71931\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base71931\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{DE8AC6ED-2CB4-48B2-B2B0-FBF94B358E69}D:\origin\apex\r5apex.exe] => (Allow) D:\origin\apex\r5apex.exe No File
FirewallRules: [UDP Query User{87FC334D-1188-47B8-93B6-B5CBCFF1CBD4}D:\origin\apex\r5apex.exe] => (Allow) D:\origin\apex\r5apex.exe No File
FirewallRules: [TCP Query User{D197C664-B2DD-46F9-AAA9-AEC45F25A5D0}D:\heroes of the storm\versions\base72191\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base72191\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{BB11B7E5-F657-4A6C-9D25-795E0E2358DC}D:\heroes of the storm\versions\base72191\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base72191\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{360C2738-392A-4003-AE66-0E635F01FBB5}D:\heroes of the storm\versions\base72307\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base72307\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{2D6ECB5B-BCAD-49A7-9918-6FAE2AE8A00D}D:\heroes of the storm\versions\base72307\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base72307\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{FE13EA00-D9F1-4F6E-9A21-BCA8354F0BE9}D:\heroes of the storm\versions\base72481\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base72481\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{DE3370F5-0BCB-408A-BA91-9335B98351AA}D:\heroes of the storm\versions\base72481\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base72481\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{D14AE3DA-042B-4D6E-8A92-5004ABCCCEBD}D:\heroes of the storm\versions\base72649\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base72649\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{EB55683F-605A-4785-A10E-BBAF170B9A25}D:\heroes of the storm\versions\base72649\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base72649\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{35CBB580-0B89-42C0-8182-46CBE89D69E3}D:\heroes of the storm\versions\base73016\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base73016\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{3E831CCD-8C6F-4EFF-9148-8C0C765DCEE8}D:\heroes of the storm\versions\base73016\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base73016\heroesofthestorm_x64.exe No File

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: Velké využití RAM už po startu Windows 10

Napsal: 04 kvě 2019 17:16
od VelkejPitomec
Fix result of Farbar Recovery Scan Tool (x64) Version: 04-05.2019 01
Ran by User007 (04-05-2019 18:12:40) Run:1
Running from C:\Users\User007\Desktop
Loaded Profiles: User007 (Available Profiles: User007)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {034AB790-3CB2-4FA1-8477-2CEC79C7621A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-03-31] (Google Inc -> Google Inc.)
Task: {2F2D3D55-D18B-4A2A-862D-A68B35F769C5} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {80803625-3A6C-4998-A136-9FF2CBAFF44C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-03-31] (Google Inc -> Google Inc.)
R3 ALSysIO; C:\Users\User007\AppData\Local\Temp\ALSysIO64.sys [46384 2019-05-04] (ALCPU (Arthur Liberman) -> Arthur Liberman) <==== ATTENTION
C:\WINDOWS\LastGood.Tmp
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
AlternateDataStreams: C:\Users\Public\AppData:CSM [474]
AlternateDataStreams: C:\Users\User007\AppData\Local\Temp:$DATA? [34]
FirewallRules: [{93ED4251-F05A-4416-B4B3-114DD5F54C4F}] => (Allow) D:\Steam\steamapps\common\Borderlands_2_RU\Binaries\Win32\Launcher.exe No File
FirewallRules: [{AD193C71-06B1-43ED-94B9-F9BCC4D2ADD0}] => (Allow) D:\Steam\steamapps\common\Borderlands_2_RU\Binaries\Win32\Launcher.exe No File
FirewallRules: [UDP Query User{42D73B5E-4EE0-442D-942E-402E1AF1F30E}D:\heroes of the storm\versions\base55010\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base55010\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{61638494-A6D7-4EE4-B71A-2FFF4E1346C7}D:\heroes of the storm\versions\base55010\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base55010\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{544C5F46-6EE7-4D72-A785-03E8F10713D9}C:\program files (x86)\blizzard app\battle.net.8965\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.8965\battle.net.exe No File
FirewallRules: [TCP Query User{384C46CC-E1AC-4A6C-A046-4985E6E3B42D}C:\program files (x86)\blizzard app\battle.net.8965\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.8965\battle.net.exe No File
FirewallRules: [UDP Query User{6356C0DC-DEFD-4FE5-B11F-EB8B5B7A55EC}D:\heroes of the storm\versions\base54968\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base54968\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{0B2C9478-BA1E-401E-AB17-A8A2810BD3A3}D:\heroes of the storm\versions\base54968\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base54968\heroesofthestorm_x64.exe No File
FirewallRules: [{C63C689D-D38D-4066-97D5-54E71D65117F}] => (Allow) D:\Steam\steamapps\common\ShadowOfMordor\x64\ShadowOfMordor.exe No File
FirewallRules: [{E13EABD1-8831-48B2-8379-8956851E1A7A}] => (Allow) D:\Steam\steamapps\common\ShadowOfMordor\x64\ShadowOfMordor.exe No File
FirewallRules: [UDP Query User{80B4869E-D969-42A0-8B4A-F7207F540CA9}D:\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{E1B8329C-E8A0-4434-B84E-A19C08CE160C}D:\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{DF304F6A-7284-4893-A349-48AABE3943D6}D:\heroes of the storm public test\versions\base54098\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm public test\versions\base54098\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{E2C073FA-D960-4634-93F2-2EAABF7A7ABE}D:\heroes of the storm public test\versions\base54098\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm public test\versions\base54098\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{B9943833-6067-42FF-80C0-2B5AD49F3AA7}D:\heroes of the storm\versions\base53965\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base53965\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{28434CF1-D5AF-4F4A-AB15-0A089D74FD86}D:\heroes of the storm\versions\base53965\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base53965\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{D572A364-E9AB-4946-968B-1FB03C3A5FBF}C:\program files (x86)\blizzard app\battle.net.8839\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.8839\battle.net.exe No File
FirewallRules: [TCP Query User{FD6B80F8-386D-41A2-8075-85F5C3A50F24}C:\program files (x86)\blizzard app\battle.net.8839\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.8839\battle.net.exe No File
FirewallRules: [UDP Query User{6038D37A-17E5-48B2-8A5C-E56BE7C966A3}C:\program files (x86)\blizzard app\battle.net.8800\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.8800\battle.net.exe No File
FirewallRules: [TCP Query User{04C17D35-F0C7-4782-97F6-CF61C8B1943C}C:\program files (x86)\blizzard app\battle.net.8800\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.8800\battle.net.exe No File
FirewallRules: [UDP Query User{EAE1FF82-6F77-4527-92D8-432B89AF4119}D:\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{239EED84-C64A-4A84-AAA9-27240F289659}D:\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{4E11A0D7-0852-4603-A111-D9CDFACBC82D}D:\heroes of the storm\versions\base53275\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base53275\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{F9F6A69E-0175-4C26-8CB0-C2FB2735489F}D:\heroes of the storm\versions\base53275\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base53275\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{7360E178-3952-421A-9BAF-3AE42382E0FA}C:\program files (x86)\blizzard app\battle.net.8733\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.8733\battle.net.exe No File
FirewallRules: [TCP Query User{DCA10392-69AA-45E1-AC08-20DE52B99148}C:\program files (x86)\blizzard app\battle.net.8733\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.8733\battle.net.exe No File
FirewallRules: [UDP Query User{F4DC6A2D-B9EB-44AE-AA76-8C422E47F8A7}D:\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{DA796052-9457-43F3-8F7E-A909CBE05C2B}D:\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{70BD1BC6-008B-4310-90F1-C0BFEE941CE4}D:\heroes of the storm\versions\base52860\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base52860\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{50567A54-4B6C-49D9-920D-03BF34BD8CAB}D:\heroes of the storm\versions\base52860\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base52860\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{2E2A2B04-447C-454E-B75D-C841BFE1D6D3}D:\heroes of the storm public test\versions\base52561\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm public test\versions\base52561\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{5E2C0E77-2162-4DB1-9850-79FF5543BB9F}D:\heroes of the storm public test\versions\base52561\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm public test\versions\base52561\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{991AA792-C019-49A1-9027-FDC4EC4E0252}C:\users\user007\desktop\release (1) - bot\release\pokemobbot.exe] => (Allow) C:\users\user007\desktop\release (1) - bot\release\pokemobbot.exe No File
FirewallRules: [TCP Query User{731A2D69-6AD4-4CD5-B61A-64848BA28B2D}C:\users\user007\desktop\release (1) - bot\release\pokemobbot.exe] => (Allow) C:\users\user007\desktop\release (1) - bot\release\pokemobbot.exe No File
FirewallRules: [UDP Query User{7FF32E6D-6886-4B57-8CDE-5325C51D29C3}C:\users\user007\desktop\release (3)\release\pokemobbot.exe] => (Allow) C:\users\user007\desktop\release (3)\release\pokemobbot.exe No File
FirewallRules: [TCP Query User{59D9245F-946A-4454-BEDD-8C516A261BA4}C:\users\user007\desktop\release (3)\release\pokemobbot.exe] => (Allow) C:\users\user007\desktop\release (3)\release\pokemobbot.exe No File
FirewallRules: [UDP Query User{15A431F8-EDD9-46EE-8F06-A798C52B4457}C:\users\user007\downloads\release(1)\release\pokemobbot.exe] => (Allow) C:\users\user007\downloads\release(1)\release\pokemobbot.exe No File
FirewallRules: [TCP Query User{24C208E1-D165-4440-9B47-C325B0449589}C:\users\user007\downloads\release(1)\release\pokemobbot.exe] => (Allow) C:\users\user007\downloads\release(1)\release\pokemobbot.exe No File
FirewallRules: [UDP Query User{7C6FEAE2-B8B1-46D2-904A-717F51CABA64}C:\users\user007\downloads\release(1)\release\necrobot.exe] => (Allow) C:\users\user007\downloads\release(1)\release\necrobot.exe No File
FirewallRules: [TCP Query User{7FB85AF0-9122-4C0A-99C7-D4F8FD79C21A}C:\users\user007\downloads\release(1)\release\necrobot.exe] => (Allow) C:\users\user007\downloads\release(1)\release\necrobot.exe No File
FirewallRules: [UDP Query User{A8A0E4BB-C2A6-4C75-A937-86A764476E02}D:\heroes of the storm\versions\base44941\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base44941\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{792E2010-51AC-44DD-81D1-047026212B6C}D:\heroes of the storm\versions\base44941\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base44941\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{88C7B57C-BE6F-4845-88CA-676FA54ECB90}C:\users\user007\downloads\release\release\necrobot.exe] => (Allow) C:\users\user007\downloads\release\release\necrobot.exe No File
FirewallRules: [TCP Query User{ABFAC4C8-E67D-4AF3-BD03-3021C2BFA8C3}C:\users\user007\downloads\release\release\necrobot.exe] => (Allow) C:\users\user007\downloads\release\release\necrobot.exe No File
FirewallRules: [UDP Query User{6A41080C-3F66-4B4C-B600-6D5CCD6811B6}C:\users\user007\downloads\release\release\pogo.necrobot.cli.exe] => (Allow) C:\users\user007\downloads\release\release\pogo.necrobot.cli.exe No File
FirewallRules: [TCP Query User{C0CB5C4C-0B85-4E7B-A83D-F076FAE3F458}C:\users\user007\downloads\release\release\pogo.necrobot.cli.exe] => (Allow) C:\users\user007\downloads\release\release\pogo.necrobot.cli.exe No File
FirewallRules: [UDP Query User{41F8D7E4-CF16-4A7F-BF11-75E1B9CDC3A5}C:\users\user007\desktop\release\pogo.necrobot.cli.exe] => (Allow) C:\users\user007\desktop\release\pogo.necrobot.cli.exe No File
FirewallRules: [TCP Query User{D312967E-A4C3-4047-85CC-DEDEE94A4264}C:\users\user007\desktop\release\pogo.necrobot.cli.exe] => (Allow) C:\users\user007\desktop\release\pogo.necrobot.cli.exe No File
FirewallRules: [{C2B37AC6-2B0D-43EB-850A-F360159F2680}] => (Allow) D:\Steam\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe No File
FirewallRules: [{D31E38EF-5F00-4EE6-8F13-1FC7065385FE}] => (Allow) D:\Steam\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe No File
FirewallRules: [{F56A4C09-7DD3-4762-976D-66CD9AEC593D}] => (Allow) D:\Steam\steamapps\common\Limbo\limbo.exe (Playdead) [File not signed]
FirewallRules: [{C8786C0D-775F-4133-AAD2-1AF928AEC1C1}] => (Allow) D:\Steam\steamapps\common\Limbo\limbo.exe (Playdead) [File not signed]
FirewallRules: [{5AE182CF-505E-4688-ADB3-08414E8EE4F4}] => (Allow) D:\Ubisoft Game Launcher\games\Prince of Persia Sands of Time\POP.EXE No File
FirewallRules: [{D6B80623-0591-491F-9E3E-5DF5A4264939}] => (Allow) D:\Ubisoft Game Launcher\games\Prince of Persia Sands of Time\POP.EXE No File
FirewallRules: [{87B9F128-F163-4DC2-BEB4-AF9FF7F145D3}] => (Allow) D:\Ubisoft Game Launcher\games\Prince of Persia Sands of Time\PrinceOfPersia.EXE No File
FirewallRules: [{06FB3A39-5AEE-4B3B-86BE-F1D92F0AA648}] => (Allow) D:\Ubisoft Game Launcher\games\Prince of Persia Sands of Time\PrinceOfPersia.EXE No File
FirewallRules: [UDP Query User{5064E8D1-347E-44BA-85D1-148B7330938D}D:\heroes of the storm\versions\base43170\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base43170\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{9F1A606F-E418-4C55-BD94-EC145125DA6B}D:\heroes of the storm\versions\base43170\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base43170\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{7D4FB377-99D1-44EC-848D-A3DC59357250}D:\heroes of the storm\versions\base42958\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base42958\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{1FA87237-E286-4129-B781-50AC20490680}D:\heroes of the storm\versions\base42958\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base42958\heroesofthestorm_x64.exe No File
FirewallRules: [{B0A3A0D5-A5A6-48A5-814B-EB2E7126D1BD}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe No File
FirewallRules: [{7ED515D3-283A-44A0-872B-A59DE57D09AF}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe No File
FirewallRules: [UDP Query User{F7355B4F-AA9F-47C2-AAE8-5C7B6040251C}D:\heroes of the storm\versions\base42506\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base42506\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{66F2BFC7-1592-4B5C-9957-49894E771D3F}D:\heroes of the storm\versions\base42506\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base42506\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{78E0A2B6-D4BC-4024-8227-73F916DE5915}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [TCP Query User{C33CEE36-AB58-425A-8C72-AABFF9845D6F}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [UDP Query User{113B88CB-B2A8-4207-951A-E6C79E7EE691}D:\heroes of the storm\versions\base42406\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base42406\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{9A8FD8C6-6166-4BC2-A032-3307767285BB}D:\heroes of the storm\versions\base42406\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base42406\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{541884BF-4ED3-43BA-B82B-6C8ED42CB245}D:\heroes of the storm\versions\base42273\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base42273\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{63882FC1-D08A-4370-9A97-C2CED4000346}D:\heroes of the storm\versions\base42273\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base42273\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{122A59A7-1549-4C68-9EEF-7835E2ADBB69}D:\strongdc++\strongdc.exe] => (Allow) D:\strongdc++\strongdc.exe No File
FirewallRules: [TCP Query User{75F3CFC7-9353-4156-A9C3-0389E9E33E22}D:\strongdc++\strongdc.exe] => (Allow) D:\strongdc++\strongdc.exe No File
FirewallRules: [{F167CA82-6557-4B27-8054-82D5589114D7}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe No File
FirewallRules: [{BC7DDC40-DCA0-4EE6-B4CD-8FB44A692A91}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe No File
FirewallRules: [{9B7F9652-1A8B-49F1-8C8F-4299774804D3}] => (Allow) D:\League of Legends\lol.launcher.admin.exe No File
FirewallRules: [{6C814803-6736-4833-AB71-3296E5B272D2}] => (Allow) D:\League of Legends\lol.launcher.exe No File
FirewallRules: [UDP Query User{43CCEA1F-74EF-4FC6-BFF2-0EA170B83B77}D:\heroes of the storm\versions\base41810\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base41810\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{E57FF360-4379-4316-BF12-4A8A37831E0B}D:\heroes of the storm\versions\base41810\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base41810\heroesofthestorm_x64.exe No File
FirewallRules: [{34911A19-15CC-44F1-A454-1B54946C74F8}] => (Allow) D:\Steam\bin\steamwebhelper.exe No File
FirewallRules: [{2A33C403-022D-46CC-A830-46653826937B}] => (Allow) D:\Steam\bin\steamwebhelper.exe No File
FirewallRules: [TCP Query User{16A054A3-ADCD-4FB0-8BBE-FF0C0AD904BF}C:\users\user007\desktop\release_8.8.2016\release 8.8.2016\pokemobbot.exe] => (Allow) C:\users\user007\desktop\release_8.8.2016\release 8.8.2016\pokemobbot.exe No File
FirewallRules: [UDP Query User{48E30B23-2CC9-4FD3-9A9B-E0C99459EF7F}C:\users\user007\desktop\release_8.8.2016\release 8.8.2016\pokemobbot.exe] => (Allow) C:\users\user007\desktop\release_8.8.2016\release 8.8.2016\pokemobbot.exe No File
FirewallRules: [TCP Query User{0D88083F-830C-4D10-9003-D62726B6C218}C:\users\user007\desktop\release_8.9.2016\release 8.9.2016\pokemobbot.exe] => (Allow) C:\users\user007\desktop\release_8.9.2016\release 8.9.2016\pokemobbot.exe No File
FirewallRules: [UDP Query User{ACCF0DA5-DE0E-408D-8DC9-DFBEFCB960D7}C:\users\user007\desktop\release_8.9.2016\release 8.9.2016\pokemobbot.exe] => (Allow) C:\users\user007\desktop\release_8.9.2016\release 8.9.2016\pokemobbot.exe No File
FirewallRules: [TCP Query User{D46B8912-D13E-4E49-A0E4-4B90C9D83460}H:\release_8.9.2016\release 8.9.2016\pokemobbot.exe] => (Allow) H:\release_8.9.2016\release 8.9.2016\pokemobbot.exe No File
FirewallRules: [UDP Query User{59F2EEAA-C41A-44A2-95C8-648151E712CC}H:\release_8.9.2016\release 8.9.2016\pokemobbot.exe] => (Allow) H:\release_8.9.2016\release 8.9.2016\pokemobbot.exe No File
FirewallRules: [TCP Query User{0453CE09-1F03-4650-A57D-ED5919A9B5D2}D:\heroes of the storm\versions\base45228\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base45228\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{D3C407B8-6037-47B2-8774-7BEA4D943C0A}D:\heroes of the storm\versions\base45228\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base45228\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{F3F2D4AF-AF51-4AFA-89EF-FCA9E338F8A4}C:\users\user007\downloads\release\pokemobbot.exe] => (Allow) C:\users\user007\downloads\release\pokemobbot.exe No File
FirewallRules: [UDP Query User{91A978FC-8AD1-4FBD-85A4-01FA8215A624}C:\users\user007\downloads\release\pokemobbot.exe] => (Allow) C:\users\user007\downloads\release\pokemobbot.exe No File
FirewallRules: [TCP Query User{F0CCC162-70D4-427D-8841-D1F6587099D9}C:\users\user007\downloads\release (1)\pokemobbot.exe] => (Allow) C:\users\user007\downloads\release (1)\pokemobbot.exe No File
FirewallRules: [UDP Query User{C04A1ABD-B128-4DBA-81C2-C3BFEE123343}C:\users\user007\downloads\release (1)\pokemobbot.exe] => (Allow) C:\users\user007\downloads\release (1)\pokemobbot.exe No File
FirewallRules: [{740EA148-C9F1-485E-900F-FCE999AAA56F}] => (Allow) D:\Ubisoft Game Launcher\games\Rayman Origins\gu.exe No File
FirewallRules: [{BB929041-6DBE-4A8F-861D-AA6102829FE3}] => (Allow) D:\Ubisoft Game Launcher\games\Rayman Origins\gu.exe No File
FirewallRules: [{E0F82B81-58DC-4C8A-A97B-E3CEEB0E544D}] => (Allow) D:\Ubisoft Game Launcher\games\Rayman Origins\Rayman Origins.exe No File
FirewallRules: [{6F5F8696-E64B-427C-8935-DDD01A20622E}] => (Allow) D:\Ubisoft Game Launcher\games\Rayman Origins\Rayman Origins.exe No File
FirewallRules: [TCP Query User{8DDA124A-43A8-423D-B9A9-0168660047C8}C:\users\user007\downloads\downloader_warcraft3_reign_of_chaos_engb.exe] => (Allow) C:\users\user007\downloads\downloader_warcraft3_reign_of_chaos_engb.exe No File
FirewallRules: [UDP Query User{C2FC54B9-AB0E-43E3-B667-C4D3099ECE5C}C:\users\user007\downloads\downloader_warcraft3_reign_of_chaos_engb.exe] => (Allow) C:\users\user007\downloads\downloader_warcraft3_reign_of_chaos_engb.exe No File
FirewallRules: [TCP Query User{9234D1CE-583A-4B7B-A363-E07F031C436C}C:\users\user007\downloads\downloader_warcraft3_the_frozen_throne_engb.exe] => (Allow) C:\users\user007\downloads\downloader_warcraft3_the_frozen_throne_engb.exe No File
FirewallRules: [UDP Query User{3925A71C-7B64-4A6F-9547-482881F3D660}C:\users\user007\downloads\downloader_warcraft3_the_frozen_throne_engb.exe] => (Allow) C:\users\user007\downloads\downloader_warcraft3_the_frozen_throne_engb.exe No File
FirewallRules: [{4A2FCAEB-F8C8-4DE8-8712-B6A1526C620C}] => (Allow) D:\Steam\steamapps\common\EvolveGame\bin64_SteamRetail\Evolve.exe No File
FirewallRules: [{71E64453-0A63-4C88-9807-E3898E900573}] => (Allow) D:\Steam\steamapps\common\EvolveGame\bin64_SteamRetail\Evolve.exe No File
FirewallRules: [TCP Query User{72132E22-C918-4908-9352-23B6DF06474E}D:\heroes of the storm\versions\base49076\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base49076\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{30DD6515-E0E6-4887-8689-17FDE6FCB8D6}D:\heroes of the storm\versions\base49076\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base49076\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{7375A639-A903-4D90-82B9-366BDA302790}D:\steam\steamapps\common\terraria\terrariaserver.exe] => (Allow) D:\steam\steamapps\common\terraria\terrariaserver.exe (Re-Logic) [File not signed]
FirewallRules: [UDP Query User{55E7F118-3EF8-4C64-9460-23A3829B624B}D:\steam\steamapps\common\terraria\terrariaserver.exe] => (Allow) D:\steam\steamapps\common\terraria\terrariaserver.exe (Re-Logic) [File not signed]
FirewallRules: [TCP Query User{2BC1C940-5701-40C7-B1E7-04FA36DBBE5E}D:\heroes of the storm\versions\base49278\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base49278\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{F601CFFD-88E7-49CE-8665-C2DE59EE6AC5}D:\heroes of the storm\versions\base49278\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base49278\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{7499E9D6-80EA-4CB4-8EDB-26C26647841B}C:\program files (x86)\battle.net\battle.net.8265\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8265\battle.net.exe No File
FirewallRules: [UDP Query User{30C0F3D9-5337-4EA3-800B-3F29D6D54E8A}C:\program files (x86)\battle.net\battle.net.8265\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8265\battle.net.exe No File
FirewallRules: [TCP Query User{DCEC9B96-6C2C-45AD-9938-E4DA05BCC925}D:\diablo iii\x64\diablo iii64.exe] => (Allow) D:\diablo iii\x64\diablo iii64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{B2978D0F-66D8-481D-B48E-938F70524929}D:\diablo iii\x64\diablo iii64.exe] => (Allow) D:\diablo iii\x64\diablo iii64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{1964AF89-9FDF-461E-90A3-A759CCC10BAF}C:\program files (x86)\battle.net\battle.net.8288\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8288\battle.net.exe No File
FirewallRules: [UDP Query User{710D6D35-8191-46AD-A797-96BBDD0B46CE}C:\program files (x86)\battle.net\battle.net.8288\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8288\battle.net.exe No File
FirewallRules: [TCP Query User{812C0B13-899B-4CD4-9E1D-DEA24CCFF658}C:\program files (x86)\battle.net\battle.net.8293\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8293\battle.net.exe No File
FirewallRules: [UDP Query User{A2DE9BA1-9A50-4F64-AEF4-EEDACE395A23}C:\program files (x86)\battle.net\battle.net.8293\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8293\battle.net.exe No File
FirewallRules: [TCP Query User{BA88F8B7-5366-4020-A99B-395C1CC2D9F4}D:\heroes of the storm\versions\base49747\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base49747\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{89B9BB9D-39F5-4E25-9044-DA7E4DAD6877}D:\heroes of the storm\versions\base49747\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base49747\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{3248E888-46E7-4DB9-BA0F-DC611E587CFE}D:\heroes of the storm\versions\base49907\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base49907\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{A5A3FB6A-FB6A-462F-B46A-A2BE3A7DDE9F}D:\heroes of the storm\versions\base49907\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base49907\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{0B0BD055-AE86-49E3-B877-E3DD8C1C120A}D:\heroes of the storm\versions\base50286\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base50286\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{5783AD30-DA5D-4498-8771-212BB1B0CEFD}D:\heroes of the storm\versions\base50286\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base50286\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{D93046ED-091D-4411-80C6-1435A683B366}D:\ubisoft game launcher\games\rayman origins\rayman origins.exe] => (Allow) D:\ubisoft game launcher\games\rayman origins\rayman origins.exe No File
FirewallRules: [UDP Query User{C93E46A9-9018-4930-A5BE-F158CAA41092}D:\ubisoft game launcher\games\rayman origins\rayman origins.exe] => (Allow) D:\ubisoft game launcher\games\rayman origins\rayman origins.exe No File
FirewallRules: [TCP Query User{A97E3303-7C09-4A49-B428-FA1F45099718}D:\heroes of the storm\versions\base50441\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base50441\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{8C2A9EDC-6DFB-4E3C-BC1C-322A72E79440}D:\heroes of the storm\versions\base50441\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base50441\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{F4FD134D-735F-43A3-83E8-104E77CC1701}C:\program files (x86)\battle.net\battle.net.8394\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8394\battle.net.exe No File
FirewallRules: [UDP Query User{3F90D0AF-99E1-4A5F-874D-CB865B3A5FC4}C:\program files (x86)\battle.net\battle.net.8394\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8394\battle.net.exe No File
FirewallRules: [TCP Query User{1B34BA0C-490A-4E9B-9996-AAD7FF7424E2}C:\program files (x86)\battle.net\battle.net.8423\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8423\battle.net.exe No File
FirewallRules: [UDP Query User{8923668F-EA94-4DF2-957C-1DF65001158B}C:\program files (x86)\battle.net\battle.net.8423\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8423\battle.net.exe No File
FirewallRules: [TCP Query User{87A1435F-D5AB-4953-B9A2-8CE348A6DD6C}D:\heroes of the storm\versions\base50950\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base50950\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{BA74F366-80E6-4565-B3E3-667130410A70}D:\heroes of the storm\versions\base50950\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base50950\heroesofthestorm_x64.exe No File
FirewallRules: [{BBE8D6AB-15B7-4554-8D42-883493311411}] => (Allow) D:\Nov� slo�ka\Tom Clancy's The Division\TheDivision.exe No File
FirewallRules: [{FB856A36-70C0-473C-94B8-F3B943667EC6}] => (Allow) D:\Ubisoft games\Assassin's Creed III\AC3SP.exe No File
FirewallRules: [{4EB2128D-25DD-41CF-AC44-1DF15D2C6890}] => (Allow) D:\Ubisoft games\Assassin's Creed III\AC3SP.exe No File
FirewallRules: [{1D83AB88-9C23-4509-8E45-DC25EAD1EB19}] => (Allow) D:\Ubisoft games\Assassin's Creed III\AC3MP.exe No File
FirewallRules: [{7B2931A9-24D3-4E5C-94B5-EACBC853B47E}] => (Allow) D:\Ubisoft games\Assassin's Creed III\AC3MP.exe No File
FirewallRules: [{A8BB2F5B-92DB-4D3D-BD17-55BDA581A3A9}] => (Allow) D:\Steam\steamapps\common\PuzzleQuest2\PuzzleQuest2.exe () [File not signed]
FirewallRules: [{6ED75705-EEB2-4A01-930F-E8306F77119C}] => (Allow) D:\Steam\steamapps\common\PuzzleQuest2\PuzzleQuest2.exe () [File not signed]
FirewallRules: [TCP Query User{B0228E2E-EAE7-4A32-B172-0AC9F8C1DAD2}D:\heroes of the storm\versions\base51375\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base51375\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{B9D1CE44-C62A-45BE-934C-F217B601C7CB}D:\heroes of the storm\versions\base51375\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base51375\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{04ACC86B-8FE9-41BC-8AB2-3E2F0BD12947}C:\program files (x86)\battle.net\battle.net.8518\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8518\battle.net.exe No File
FirewallRules: [UDP Query User{EA8AF8D2-F6E7-46ED-8D04-5C1A563F973D}C:\program files (x86)\battle.net\battle.net.8518\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8518\battle.net.exe No File
FirewallRules: [TCP Query User{5730CBE2-A7B8-449D-87B1-963E16BFDE74}D:\heroes of the storm\versions\base51779\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base51779\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{6B59D17C-3876-4A1E-9F4E-C032A77DE326}D:\heroes of the storm\versions\base51779\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base51779\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{EF89007E-C796-4870-92F5-A41E467FCCE1}C:\program files (x86)\battle.net\battle.net.8554\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8554\battle.net.exe No File
FirewallRules: [UDP Query User{BE4BDEAC-E62C-446A-9F31-B764027FD59A}C:\program files (x86)\battle.net\battle.net.8554\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8554\battle.net.exe No File
FirewallRules: [TCP Query User{436E8BDF-1738-4902-8FE8-85FECD57FF7C}D:\heroes of the storm\versions\base52008\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base52008\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{D9FFF4D8-8BB5-4DAD-A2A8-AF1B816C494F}D:\heroes of the storm\versions\base52008\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base52008\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{3DADB428-84BE-4FE6-B9A4-645EC55478AF}D:\heroes of the storm\versions\base52124\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base52124\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{0938E052-EA19-4052-9996-C9BD861BC8DC}D:\heroes of the storm\versions\base52124\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base52124\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{A7520F60-985A-4150-9ADE-93B7B2B4EBE7}C:\program files (x86)\blizzard app\battle.net.8600\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.8600\battle.net.exe No File
FirewallRules: [UDP Query User{E215CBF5-B8DE-4A75-98BF-4683A6F35E29}C:\program files (x86)\blizzard app\battle.net.8600\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.8600\battle.net.exe No File
FirewallRules: [TCP Query User{0BB6CEF6-DED5-4EA6-B0DE-D6CDAB74668A}D:\heroes of the storm\versions\base52351\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base52351\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{D33D64AC-9AE5-40E7-BFF7-5A5BCEB3876E}D:\heroes of the storm\versions\base52351\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base52351\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{09052050-B321-4EF0-AB5C-F8BA7FC60A24}C:\program files (x86)\blizzard app\battle.net.8657\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.8657\battle.net.exe No File
FirewallRules: [UDP Query User{9F17D201-9316-42C2-9509-C37F45106DAF}C:\program files (x86)\blizzard app\battle.net.8657\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.8657\battle.net.exe No File
FirewallRules: [TCP Query User{000DBB5D-8070-41C0-89D7-30615E91A41F}D:\heroes of the storm\versions\base52647\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base52647\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{6C096652-8D16-4962-A88D-C129101F355F}D:\heroes of the storm\versions\base52647\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base52647\heroesofthestorm_x64.exe No File
FirewallRules: [{1B66AA5C-1BBF-4812-98D2-FFC842851002}] => (Allow) D:\Steam\steamapps\common\ShadowOfWar\x64\ShadowOfWar.exe (WB Games Inc. -> WB Games, Inc.)
FirewallRules: [{D28D171A-E4A8-4646-BDC4-AFC86E2213F9}] => (Allow) D:\Steam\steamapps\common\ShadowOfWar\x64\ShadowOfWar.exe (WB Games Inc. -> WB Games, Inc.)
FirewallRules: [{87BBD4DA-826A-46C7-A3EF-DF38B43CB2C3}] => (Allow) D:\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe No File
FirewallRules: [{A42D5BAD-CC3F-4E2D-B6E1-9D9E8C8BD44C}] => (Allow) D:\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe No File
FirewallRules: [TCP Query User{2D379503-968B-45D4-96FF-9B9A285B4BFD}D:\heroes of the storm\versions\base58795\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base58795\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{0E900554-D3B5-4DF6-876C-2B9EE3BF4A09}D:\heroes of the storm\versions\base58795\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base58795\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{EF670EA1-A8E4-4045-8739-1787BF1498A7}C:\program files (x86)\blizzard app\battle.net.9526\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.9526\battle.net.exe No File
FirewallRules: [UDP Query User{954C2865-C86B-4B76-AA25-593A5D3F3041}C:\program files (x86)\blizzard app\battle.net.9526\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.9526\battle.net.exe No File
FirewallRules: [TCP Query User{778F3786-5082-4DB5-B08B-7FA507903C27}D:\heroes of the storm\versions\base59239\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base59239\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{FE42C476-A58F-4F63-B10A-DACBC49C43C8}D:\heroes of the storm\versions\base59239\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base59239\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{CA23D60B-429F-418D-807A-C6C240D2AE5F}D:\heroes of the storm\versions\base59657\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base59657\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{EA82EECD-1996-4DC8-9E3C-4E53A70FB489}D:\heroes of the storm\versions\base59657\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base59657\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{DB59CE41-0549-484B-952E-67F2FAFA8B5C}D:\heroes of the storm\versions\base59799\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base59799\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{1804BD5D-6599-4016-AC53-CA006459B76C}D:\heroes of the storm\versions\base59799\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base59799\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{F0199650-8A67-4992-9FFB-7E71126F1C46}D:\heroes of the storm\versions\base59988\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base59988\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{C9A63013-76E3-41C9-BE92-C98D430A4BD8}D:\heroes of the storm\versions\base59988\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base59988\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{01D0E02A-D1BD-4EDD-8697-A17D8B4760D8}C:\program files (x86)\starcraft ii\versions\base60321\sc2_x64.exe] => (Allow) C:\program files (x86)\starcraft ii\versions\base60321\sc2_x64.exe No File
FirewallRules: [UDP Query User{8DFB1123-D03C-4AB7-B415-2D742162F859}C:\program files (x86)\starcraft ii\versions\base60321\sc2_x64.exe] => (Allow) C:\program files (x86)\starcraft ii\versions\base60321\sc2_x64.exe No File
FirewallRules: [TCP Query User{0CBFB194-0511-4EE4-8B93-1AF87B2A10F9}D:\heroes of the storm\versions\base60399\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base60399\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{8FB46018-AC9A-4E5A-A43B-F50F3B0F55EF}D:\heroes of the storm\versions\base60399\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base60399\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{7F88D63F-44E5-4B4B-B761-88E2C0EEA4BB}D:\heroes of the storm\versions\base60522\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base60522\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{38E57C98-61DD-4518-908A-67F8C137BDA8}D:\heroes of the storm\versions\base60522\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base60522\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{096FC07F-382A-4B2B-A526-5940564A0F6C}D:\heroes of the storm\versions\base60632\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base60632\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{B8068610-4B45-4BE5-90C1-E4F1B2857D64}D:\heroes of the storm\versions\base60632\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base60632\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{7BD2F056-C181-43D7-BCDD-5E7F16C984F3}D:\heroes of the storm\versions\base60821\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base60821\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{4A5E5BF3-9A49-4319-9872-F4FF4B4B8AA1}D:\heroes of the storm\versions\base60821\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base60821\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{3B3A6183-5001-4AAC-8149-68F96BC892F2}D:\ubisoft games\assassin's creed iii\ac3sp.exe] => (Allow) D:\ubisoft games\assassin's creed iii\ac3sp.exe No File
FirewallRules: [UDP Query User{AC205C09-435B-4E0F-B20B-6D15D31FEE97}D:\ubisoft games\assassin's creed iii\ac3sp.exe] => (Allow) D:\ubisoft games\assassin's creed iii\ac3sp.exe No File
FirewallRules: [TCP Query User{FC352D25-0EB9-4817-BEDF-A67570155167}D:\ubisoft games\assassin's creed iii\ac3mp.exe] => (Block) D:\ubisoft games\assassin's creed iii\ac3mp.exe No File
FirewallRules: [UDP Query User{4A42F362-1F27-4D2F-AF75-1FDFE82E0747}D:\ubisoft games\assassin's creed iii\ac3mp.exe] => (Block) D:\ubisoft games\assassin's creed iii\ac3mp.exe No File
FirewallRules: [TCP Query User{5794629F-D912-48C6-BB91-C6FF5C32FFB6}D:\heroes of the storm\versions\base61129\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base61129\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{80165ED4-16D2-4DD3-A3D4-B90EF6F3B77E}D:\heroes of the storm\versions\base61129\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base61129\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{3C58DF06-A789-4C53-8FE4-7F3FB81C260C}D:\heroes of the storm\versions\base61361\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base61361\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{AB3232DF-E603-4AC0-9810-01955DB34F57}D:\heroes of the storm\versions\base61361\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base61361\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{6D4CA6A6-A243-49DA-BF14-A1441DEAC124}D:\heroes of the storm\versions\base61552\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base61552\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{09E2FBD6-110C-4970-B525-A6FD63EC2A1D}D:\heroes of the storm\versions\base61552\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base61552\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{887E3DF6-C23A-4C4A-90A5-F1C625E1B786}D:\heroes of the storm\versions\base62119\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base62119\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{00D74579-3FF5-4392-B5F5-268E2B4FBE27}D:\heroes of the storm\versions\base62119\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base62119\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{117ED6AC-8448-493E-942B-585CA8DFB713}D:\heroes of the storm\versions\base62212\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base62212\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{3C6BDC0E-423C-475B-8D54-AFAB6D0DF8F1}D:\heroes of the storm\versions\base62212\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base62212\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{28812A4C-4F61-4641-836C-90D3C212AADD}D:\heroes of the storm\versions\base62424\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base62424\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{92659253-8BCC-4002-B76C-B8BE38BD2ACF}D:\heroes of the storm\versions\base62424\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base62424\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{7925E4FE-97A9-4D14-83AE-11DBA2509E44}D:\epic games\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) D:\epic games\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe No File
FirewallRules: [UDP Query User{69C3811E-CD8E-4A52-9010-EAC35BDADC38}D:\epic games\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) D:\epic games\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe No File
FirewallRules: [TCP Query User{3FB1BF42-C3C2-41E6-9B97-4121FEB4E8BB}D:\epic games\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\epic games\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe No File
FirewallRules: [UDP Query User{A966F5A2-C8CF-46FA-BF39-77683F6E488D}D:\epic games\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\epic games\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe No File
FirewallRules: [TCP Query User{EF369FFE-33FB-4269-A000-B2ED712FB9FF}D:\epic games\fortnite\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\epic games\fortnite\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe No File
FirewallRules: [UDP Query User{6380C527-F893-4A3F-9A2D-57328977B85A}D:\epic games\fortnite\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\epic games\fortnite\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe No File
FirewallRules: [TCP Query User{82727FCB-93AD-4750-AABA-394579BBE984}D:\heroes of the storm\versions\base62833\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base62833\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{D3867AE4-825F-498B-B0A5-0B90296702F6}D:\heroes of the storm\versions\base62833\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base62833\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{5793053F-BEB6-4345-BAD3-43B60352C0F6}D:\heroes of the storm\versions\base63070\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base63070\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{C4EE66A4-5BAE-45BF-9AF7-9AC1A387BDBA}D:\heroes of the storm\versions\base63070\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base63070\heroesofthestorm_x64.exe No File
FirewallRules: [{A7A22C1A-913B-441C-8805-1AF236316A95}] => (Allow) D:\Steam\steamapps\common\Resident Evil 4\Bin32\bio4.exe No File
FirewallRules: [{197B4B93-CF68-417A-A093-A8D480192F96}] => (Allow) D:\Steam\steamapps\common\Resident Evil 4\Bin32\bio4.exe No File
FirewallRules: [TCP Query User{904A717A-BA1D-4160-BAE2-FCFE30F3F8C3}D:\heroes of the storm\versions\base63402\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base63402\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{BE87592B-7DD8-4612-ADAD-4E6CC5306828}D:\heroes of the storm\versions\base63402\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base63402\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{33F416F8-51E6-4EE3-BA82-66500D96A35B}D:\heroes of the storm\versions\base63635\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base63635\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{654AEC83-F428-44D0-8C34-A6EAB5CA778A}D:\heroes of the storm\versions\base63635\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base63635\heroesofthestorm_x64.exe No File
FirewallRules: [{0D988A3E-8CC1-4042-850A-92EF841A98F9}] => (Allow) D:\Steam\steamapps\common\Mafia\Mafia\Game.exe No File
FirewallRules: [{E0A29E4F-C57D-41E1-8000-4A9212B248DE}] => (Allow) D:\Steam\steamapps\common\Mafia\Mafia\Game.exe No File
FirewallRules: [{20A70371-ADD8-4BCF-8919-636FF46E9581}] => (Allow) D:\Steam\steamapps\common\Mafia\Mafia\Setup.exe No File
FirewallRules: [{6D037C3F-2DE1-44B0-BC1E-33818C9F66A9}] => (Allow) D:\Steam\steamapps\common\Mafia\Mafia\Setup.exe No File
FirewallRules: [TCP Query User{D982119E-74A1-4C0E-B136-3CDCA34F34EF}C:\program files (x86)\starcraft ii\versions\base63454\sc2_x64.exe] => (Allow) C:\program files (x86)\starcraft ii\versions\base63454\sc2_x64.exe No File
FirewallRules: [UDP Query User{A68C9FFD-AFB4-4EFE-A723-25DAD286AF1C}C:\program files (x86)\starcraft ii\versions\base63454\sc2_x64.exe] => (Allow) C:\program files (x86)\starcraft ii\versions\base63454\sc2_x64.exe No File
FirewallRules: [TCP Query User{82795002-B420-4D0C-9FD3-4AB135C88C6C}D:\heroes of the storm\versions\base64100\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base64100\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{F4EA4DD0-E613-42F5-87F9-CD8C758E97F4}D:\heroes of the storm\versions\base64100\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base64100\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{8832C8AB-E56E-4D1E-BD17-7EBBF1036F2D}D:\heroes of the storm\versions\base64129\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base64129\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{AC9D4E61-168A-4C63-8C09-B464D1A677D4}D:\heroes of the storm\versions\base64129\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base64129\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{E8591DC7-CF87-4AA8-87B4-84B57C9C9989}C:\programdata\battle.net\agent\agent.6160\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.6160\agent.exe No File
FirewallRules: [UDP Query User{5297EB7B-3333-46A1-8B7B-C55D71ED8D3D}C:\programdata\battle.net\agent\agent.6160\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.6160\agent.exe No File
FirewallRules: [TCP Query User{37E2876E-4516-4C5A-99DA-5C4B7A3A0280}D:\heroes of the storm\versions\base64455\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base64455\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{CF9DB37F-CD99-4649-B4AD-8DF10A2520AD}D:\heroes of the storm\versions\base64455\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base64455\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{541271F8-CF37-44E5-A918-49F53F7BC016}D:\heroes of the storm\versions\base69350\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base69350\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{38227AAB-9380-465A-B40E-3FFC95BC9C31}D:\heroes of the storm\versions\base69350\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base69350\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{B44D0F8C-FCAF-4928-BCA6-F765E65D9B65}D:\heroes of the storm\versions\base69790\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base69790\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{5193C11C-2D74-4F31-92C0-A91508B0A1F2}D:\heroes of the storm\versions\base69790\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base69790\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{4FDBED34-BDAA-4189-B786-6441CACDCB82}D:\heroes of the storm\versions\base69823\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base69823\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{B5AA01CB-69FF-4D1B-AD31-A93300A025F6}D:\heroes of the storm\versions\base69823\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base69823\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{80FAB4A4-D965-4CD6-8154-2A6485469D15}D:\destiny 2\destiny2.exe] => (Allow) D:\destiny 2\destiny2.exe No File
FirewallRules: [UDP Query User{4EA3460C-AB0E-4321-A690-A23DFF5CEB5D}D:\destiny 2\destiny2.exe] => (Allow) D:\destiny 2\destiny2.exe No File
FirewallRules: [TCP Query User{305EC580-7F8D-40B0-83C8-077E5EE35B06}D:\heroes of the storm\versions\base70200\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base70200\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{552B3F79-9795-4C2D-B5F1-353492B7C190}D:\heroes of the storm\versions\base70200\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base70200\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{4E64D7B2-6782-4333-8C34-06A3029D1A45}D:\heroes of the storm\versions\base70616\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base70616\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{E2E2D14C-F867-4800-A899-208A26281BB1}D:\heroes of the storm\versions\base70616\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base70616\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{A5417B9E-2ABB-443C-8019-1946D0059A5C}D:\heroes of the storm\versions\base71138\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base71138\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{5A4DC5EA-9DED-47A1-BB2D-021444E80F4F}D:\heroes of the storm\versions\base71138\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base71138\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{942C6320-9743-4860-8276-60DE6BD8E236}D:\lol\rads\projects\league_client\releases\0.0.0.178\deploy\leagueclient.exe] => (Allow) D:\lol\rads\projects\league_client\releases\0.0.0.178\deploy\leagueclient.exe No File
FirewallRules: [UDP Query User{3C92D566-C440-46A7-A51C-693DBAA9CFC9}D:\lol\rads\projects\league_client\releases\0.0.0.178\deploy\leagueclient.exe] => (Allow) D:\lol\rads\projects\league_client\releases\0.0.0.178\deploy\leagueclient.exe No File
FirewallRules: [TCP Query User{A3987470-644D-4307-994C-53B64C6B3994}D:\heroes of the storm\versions\base71449\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base71449\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{A69FBD12-7755-47BD-84BA-58D9F1F9B5B5}D:\heroes of the storm\versions\base71449\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base71449\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{578B9342-0367-472F-AB6B-3C27CB9B927E}D:\heroes of the storm\versions\base71931\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base71931\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{8EE75125-972C-41A8-B7FF-2CE05B2AB305}D:\heroes of the storm\versions\base71931\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base71931\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{DE8AC6ED-2CB4-48B2-B2B0-FBF94B358E69}D:\origin\apex\r5apex.exe] => (Allow) D:\origin\apex\r5apex.exe No File
FirewallRules: [UDP Query User{87FC334D-1188-47B8-93B6-B5CBCFF1CBD4}D:\origin\apex\r5apex.exe] => (Allow) D:\origin\apex\r5apex.exe No File
FirewallRules: [TCP Query User{D197C664-B2DD-46F9-AAA9-AEC45F25A5D0}D:\heroes of the storm\versions\base72191\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base72191\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{BB11B7E5-F657-4A6C-9D25-795E0E2358DC}D:\heroes of the storm\versions\base72191\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base72191\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{360C2738-392A-4003-AE66-0E635F01FBB5}D:\heroes of the storm\versions\base72307\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base72307\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{2D6ECB5B-BCAD-49A7-9918-6FAE2AE8A00D}D:\heroes of the storm\versions\base72307\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base72307\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{FE13EA00-D9F1-4F6E-9A21-BCA8354F0BE9}D:\heroes of the storm\versions\base72481\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base72481\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{DE3370F5-0BCB-408A-BA91-9335B98351AA}D:\heroes of the storm\versions\base72481\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base72481\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{D14AE3DA-042B-4D6E-8A92-5004ABCCCEBD}D:\heroes of the storm\versions\base72649\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base72649\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{EB55683F-605A-4785-A10E-BBAF170B9A25}D:\heroes of the storm\versions\base72649\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base72649\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{35CBB580-0B89-42C0-8182-46CBE89D69E3}D:\heroes of the storm\versions\base73016\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base73016\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{3E831CCD-8C6F-4EFF-9148-8C0C765DCEE8}D:\heroes of the storm\versions\base73016\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base73016\heroesofthestorm_x64.exe No File

EmptyTemp:
End
*****************

Processes closed successfully.
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION => restored successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{034AB790-3CB2-4FA1-8477-2CEC79C7621A}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{034AB790-3CB2-4FA1-8477-2CEC79C7621A}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2F2D3D55-D18B-4A2A-862D-A68B35F769C5}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2F2D3D55-D18B-4A2A-862D-A68B35F769C5}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunCampaignManager" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{80803625-3A6C-4998-A136-9FF2CBAFF44C}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{80803625-3A6C-4998-A136-9FF2CBAFF44C}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
ALSysIO => Unable to stop service.
HKLM\System\CurrentControlSet\Services\ALSysIO => removed successfully
ALSysIO => service removed successfully
C:\WINDOWS\LastGood.Tmp => moved successfully
"C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA" => not found
"C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore" => not found
C:\Users\Public\AppData => ":CSM" ADS removed successfully
C:\Users\User007\AppData\Local\Temp => ":$DATA?" ADS could not remove.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{93ED4251-F05A-4416-B4B3-114DD5F54C4F}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{AD193C71-06B1-43ED-94B9-F9BCC4D2ADD0}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{42D73B5E-4EE0-442D-942E-402E1AF1F30E}D:\heroes of the storm\versions\base55010\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{61638494-A6D7-4EE4-B71A-2FFF4E1346C7}D:\heroes of the storm\versions\base55010\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{544C5F46-6EE7-4D72-A785-03E8F10713D9}C:\program files (x86)\blizzard app\battle.net.8965\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{384C46CC-E1AC-4A6C-A046-4985E6E3B42D}C:\program files (x86)\blizzard app\battle.net.8965\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{6356C0DC-DEFD-4FE5-B11F-EB8B5B7A55EC}D:\heroes of the storm\versions\base54968\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{0B2C9478-BA1E-401E-AB17-A8A2810BD3A3}D:\heroes of the storm\versions\base54968\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C63C689D-D38D-4066-97D5-54E71D65117F}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E13EABD1-8831-48B2-8379-8956851E1A7A}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{80B4869E-D969-42A0-8B4A-F7207F540CA9}D:\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{E1B8329C-E8A0-4434-B84E-A19C08CE160C}D:\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{DF304F6A-7284-4893-A349-48AABE3943D6}D:\heroes of the storm public test\versions\base54098\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{E2C073FA-D960-4634-93F2-2EAABF7A7ABE}D:\heroes of the storm public test\versions\base54098\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{B9943833-6067-42FF-80C0-2B5AD49F3AA7}D:\heroes of the storm\versions\base53965\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{28434CF1-D5AF-4F4A-AB15-0A089D74FD86}D:\heroes of the storm\versions\base53965\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{D572A364-E9AB-4946-968B-1FB03C3A5FBF}C:\program files (x86)\blizzard app\battle.net.8839\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{FD6B80F8-386D-41A2-8075-85F5C3A50F24}C:\program files (x86)\blizzard app\battle.net.8839\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{6038D37A-17E5-48B2-8A5C-E56BE7C966A3}C:\program files (x86)\blizzard app\battle.net.8800\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{04C17D35-F0C7-4782-97F6-CF61C8B1943C}C:\program files (x86)\blizzard app\battle.net.8800\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{EAE1FF82-6F77-4527-92D8-432B89AF4119}D:\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{239EED84-C64A-4A84-AAA9-27240F289659}D:\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{4E11A0D7-0852-4603-A111-D9CDFACBC82D}D:\heroes of the storm\versions\base53275\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{F9F6A69E-0175-4C26-8CB0-C2FB2735489F}D:\heroes of the storm\versions\base53275\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{7360E178-3952-421A-9BAF-3AE42382E0FA}C:\program files (x86)\blizzard app\battle.net.8733\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{DCA10392-69AA-45E1-AC08-20DE52B99148}C:\program files (x86)\blizzard app\battle.net.8733\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{F4DC6A2D-B9EB-44AE-AA76-8C422E47F8A7}D:\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{DA796052-9457-43F3-8F7E-A909CBE05C2B}D:\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{70BD1BC6-008B-4310-90F1-C0BFEE941CE4}D:\heroes of the storm\versions\base52860\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{50567A54-4B6C-49D9-920D-03BF34BD8CAB}D:\heroes of the storm\versions\base52860\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{2E2A2B04-447C-454E-B75D-C841BFE1D6D3}D:\heroes of the storm public test\versions\base52561\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{5E2C0E77-2162-4DB1-9850-79FF5543BB9F}D:\heroes of the storm public test\versions\base52561\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{991AA792-C019-49A1-9027-FDC4EC4E0252}C:\users\user007\desktop\release (1) - bot\release\pokemobbot.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{731A2D69-6AD4-4CD5-B61A-64848BA28B2D}C:\users\user007\desktop\release (1) - bot\release\pokemobbot.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{7FF32E6D-6886-4B57-8CDE-5325C51D29C3}C:\users\user007\desktop\release (3)\release\pokemobbot.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{59D9245F-946A-4454-BEDD-8C516A261BA4}C:\users\user007\desktop\release (3)\release\pokemobbot.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{15A431F8-EDD9-46EE-8F06-A798C52B4457}C:\users\user007\downloads\release(1)\release\pokemobbot.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{24C208E1-D165-4440-9B47-C325B0449589}C:\users\user007\downloads\release(1)\release\pokemobbot.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{7C6FEAE2-B8B1-46D2-904A-717F51CABA64}C:\users\user007\downloads\release(1)\release\necrobot.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{7FB85AF0-9122-4C0A-99C7-D4F8FD79C21A}C:\users\user007\downloads\release(1)\release\necrobot.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{A8A0E4BB-C2A6-4C75-A937-86A764476E02}D:\heroes of the storm\versions\base44941\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{792E2010-51AC-44DD-81D1-047026212B6C}D:\heroes of the storm\versions\base44941\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{88C7B57C-BE6F-4845-88CA-676FA54ECB90}C:\users\user007\downloads\release\release\necrobot.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{ABFAC4C8-E67D-4AF3-BD03-3021C2BFA8C3}C:\users\user007\downloads\release\release\necrobot.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{6A41080C-3F66-4B4C-B600-6D5CCD6811B6}C:\users\user007\downloads\release\release\pogo.necrobot.cli.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{C0CB5C4C-0B85-4E7B-A83D-F076FAE3F458}C:\users\user007\downloads\release\release\pogo.necrobot.cli.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{41F8D7E4-CF16-4A7F-BF11-75E1B9CDC3A5}C:\users\user007\desktop\release\pogo.necrobot.cli.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{D312967E-A4C3-4047-85CC-DEDEE94A4264}C:\users\user007\desktop\release\pogo.necrobot.cli.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C2B37AC6-2B0D-43EB-850A-F360159F2680}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D31E38EF-5F00-4EE6-8F13-1FC7065385FE}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F56A4C09-7DD3-4762-976D-66CD9AEC593D}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C8786C0D-775F-4133-AAD2-1AF928AEC1C1}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5AE182CF-505E-4688-ADB3-08414E8EE4F4}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D6B80623-0591-491F-9E3E-5DF5A4264939}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{87B9F128-F163-4DC2-BEB4-AF9FF7F145D3}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{06FB3A39-5AEE-4B3B-86BE-F1D92F0AA648}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{5064E8D1-347E-44BA-85D1-148B7330938D}D:\heroes of the storm\versions\base43170\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{9F1A606F-E418-4C55-BD94-EC145125DA6B}D:\heroes of the storm\versions\base43170\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{7D4FB377-99D1-44EC-848D-A3DC59357250}D:\heroes of the storm\versions\base42958\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{1FA87237-E286-4129-B781-50AC20490680}D:\heroes of the storm\versions\base42958\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B0A3A0D5-A5A6-48A5-814B-EB2E7126D1BD}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7ED515D3-283A-44A0-872B-A59DE57D09AF}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{F7355B4F-AA9F-47C2-AAE8-5C7B6040251C}D:\heroes of the storm\versions\base42506\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{66F2BFC7-1592-4B5C-9957-49894E771D3F}D:\heroes of the storm\versions\base42506\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{78E0A2B6-D4BC-4024-8227-73F916DE5915}C:\program files\logitech gaming software\lcore.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{C33CEE36-AB58-425A-8C72-AABFF9845D6F}C:\program files\logitech gaming software\lcore.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{113B88CB-B2A8-4207-951A-E6C79E7EE691}D:\heroes of the storm\versions\base42406\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{9A8FD8C6-6166-4BC2-A032-3307767285BB}D:\heroes of the storm\versions\base42406\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{541884BF-4ED3-43BA-B82B-6C8ED42CB245}D:\heroes of the storm\versions\base42273\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{63882FC1-D08A-4370-9A97-C2CED4000346}D:\heroes of the storm\versions\base42273\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{122A59A7-1549-4C68-9EEF-7835E2ADBB69}D:\strongdc++\strongdc.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{75F3CFC7-9353-4156-A9C3-0389E9E33E22}D:\strongdc++\strongdc.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F167CA82-6557-4B27-8054-82D5589114D7}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BC7DDC40-DCA0-4EE6-B4CD-8FB44A692A91}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9B7F9652-1A8B-49F1-8C8F-4299774804D3}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6C814803-6736-4833-AB71-3296E5B272D2}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{43CCEA1F-74EF-4FC6-BFF2-0EA170B83B77}D:\heroes of the storm\versions\base41810\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{E57FF360-4379-4316-BF12-4A8A37831E0B}D:\heroes of the storm\versions\base41810\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{34911A19-15CC-44F1-A454-1B54946C74F8}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2A33C403-022D-46CC-A830-46653826937B}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{16A054A3-ADCD-4FB0-8BBE-FF0C0AD904BF}C:\users\user007\desktop\release_8.8.2016\release 8.8.2016\pokemobbot.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{48E30B23-2CC9-4FD3-9A9B-E0C99459EF7F}C:\users\user007\desktop\release_8.8.2016\release 8.8.2016\pokemobbot.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{0D88083F-830C-4D10-9003-D62726B6C218}C:\users\user007\desktop\release_8.9.2016\release 8.9.2016\pokemobbot.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{ACCF0DA5-DE0E-408D-8DC9-DFBEFCB960D7}C:\users\user007\desktop\release_8.9.2016\release 8.9.2016\pokemobbot.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{D46B8912-D13E-4E49-A0E4-4B90C9D83460}H:\release_8.9.2016\release 8.9.2016\pokemobbot.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{59F2EEAA-C41A-44A2-95C8-648151E712CC}H:\release_8.9.2016\release 8.9.2016\pokemobbot.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{0453CE09-1F03-4650-A57D-ED5919A9B5D2}D:\heroes of the storm\versions\base45228\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{D3C407B8-6037-47B2-8774-7BEA4D943C0A}D:\heroes of the storm\versions\base45228\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{F3F2D4AF-AF51-4AFA-89EF-FCA9E338F8A4}C:\users\user007\downloads\release\pokemobbot.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{91A978FC-8AD1-4FBD-85A4-01FA8215A624}C:\users\user007\downloads\release\pokemobbot.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{F0CCC162-70D4-427D-8841-D1F6587099D9}C:\users\user007\downloads\release (1)\pokemobbot.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{C04A1ABD-B128-4DBA-81C2-C3BFEE123343}C:\users\user007\downloads\release (1)\pokemobbot.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{740EA148-C9F1-485E-900F-FCE999AAA56F}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BB929041-6DBE-4A8F-861D-AA6102829FE3}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E0F82B81-58DC-4C8A-A97B-E3CEEB0E544D}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6F5F8696-E64B-427C-8935-DDD01A20622E}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{8DDA124A-43A8-423D-B9A9-0168660047C8}C:\users\user007\downloads\downloader_warcraft3_reign_of_chaos_engb.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{C2FC54B9-AB0E-43E3-B667-C4D3099ECE5C}C:\users\user007\downloads\downloader_warcraft3_reign_of_chaos_engb.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{9234D1CE-583A-4B7B-A363-E07F031C436C}C:\users\user007\downloads\downloader_warcraft3_the_frozen_throne_engb.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{3925A71C-7B64-4A6F-9547-482881F3D660}C:\users\user007\downloads\downloader_warcraft3_the_frozen_throne_engb.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4A2FCAEB-F8C8-4DE8-8712-B6A1526C620C}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{71E64453-0A63-4C88-9807-E3898E900573}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{72132E22-C918-4908-9352-23B6DF06474E}D:\heroes of the storm\versions\base49076\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{30DD6515-E0E6-4887-8689-17FDE6FCB8D6}D:\heroes of the storm\versions\base49076\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{7375A639-A903-4D90-82B9-366BDA302790}D:\steam\steamapps\common\terraria\terrariaserver.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{55E7F118-3EF8-4C64-9460-23A3829B624B}D:\steam\steamapps\common\terraria\terrariaserver.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{2BC1C940-5701-40C7-B1E7-04FA36DBBE5E}D:\heroes of the storm\versions\base49278\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{F601CFFD-88E7-49CE-8665-C2DE59EE6AC5}D:\heroes of the storm\versions\base49278\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{7499E9D6-80EA-4CB4-8EDB-26C26647841B}C:\program files (x86)\battle.net\battle.net.8265\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{30C0F3D9-5337-4EA3-800B-3F29D6D54E8A}C:\program files (x86)\battle.net\battle.net.8265\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{DCEC9B96-6C2C-45AD-9938-E4DA05BCC925}D:\diablo iii\x64\diablo iii64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{B2978D0F-66D8-481D-B48E-938F70524929}D:\diablo iii\x64\diablo iii64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{1964AF89-9FDF-461E-90A3-A759CCC10BAF}C:\program files (x86)\battle.net\battle.net.8288\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{710D6D35-8191-46AD-A797-96BBDD0B46CE}C:\program files (x86)\battle.net\battle.net.8288\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{812C0B13-899B-4CD4-9E1D-DEA24CCFF658}C:\program files (x86)\battle.net\battle.net.8293\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{A2DE9BA1-9A50-4F64-AEF4-EEDACE395A23}C:\program files (x86)\battle.net\battle.net.8293\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{BA88F8B7-5366-4020-A99B-395C1CC2D9F4}D:\heroes of the storm\versions\base49747\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{89B9BB9D-39F5-4E25-9044-DA7E4DAD6877}D:\heroes of the storm\versions\base49747\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{3248E888-46E7-4DB9-BA0F-DC611E587CFE}D:\heroes of the storm\versions\base49907\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{A5A3FB6A-FB6A-462F-B46A-A2BE3A7DDE9F}D:\heroes of the storm\versions\base49907\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{0B0BD055-AE86-49E3-B877-E3DD8C1C120A}D:\heroes of the storm\versions\base50286\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{5783AD30-DA5D-4498-8771-212BB1B0CEFD}D:\heroes of the storm\versions\base50286\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{D93046ED-091D-4411-80C6-1435A683B366}D:\ubisoft game launcher\games\rayman origins\rayman origins.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{C93E46A9-9018-4930-A5BE-F158CAA41092}D:\ubisoft game launcher\games\rayman origins\rayman origins.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{A97E3303-7C09-4A49-B428-FA1F45099718}D:\heroes of the storm\versions\base50441\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{8C2A9EDC-6DFB-4E3C-BC1C-322A72E79440}D:\heroes of the storm\versions\base50441\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{F4FD134D-735F-43A3-83E8-104E77CC1701}C:\program files (x86)\battle.net\battle.net.8394\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{3F90D0AF-99E1-4A5F-874D-CB865B3A5FC4}C:\program files (x86)\battle.net\battle.net.8394\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{1B34BA0C-490A-4E9B-9996-AAD7FF7424E2}C:\program files (x86)\battle.net\battle.net.8423\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{8923668F-EA94-4DF2-957C-1DF65001158B}C:\program files (x86)\battle.net\battle.net.8423\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{87A1435F-D5AB-4953-B9A2-8CE348A6DD6C}D:\heroes of the storm\versions\base50950\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{BA74F366-80E6-4565-B3E3-667130410A70}D:\heroes of the storm\versions\base50950\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BBE8D6AB-15B7-4554-8D42-883493311411}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FB856A36-70C0-473C-94B8-F3B943667EC6}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4EB2128D-25DD-41CF-AC44-1DF15D2C6890}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1D83AB88-9C23-4509-8E45-DC25EAD1EB19}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7B2931A9-24D3-4E5C-94B5-EACBC853B47E}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A8BB2F5B-92DB-4D3D-BD17-55BDA581A3A9}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6ED75705-EEB2-4A01-930F-E8306F77119C}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{B0228E2E-EAE7-4A32-B172-0AC9F8C1DAD2}D:\heroes of the storm\versions\base51375\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{B9D1CE44-C62A-45BE-934C-F217B601C7CB}D:\heroes of the storm\versions\base51375\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{04ACC86B-8FE9-41BC-8AB2-3E2F0BD12947}C:\program files (x86)\battle.net\battle.net.8518\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{EA8AF8D2-F6E7-46ED-8D04-5C1A563F973D}C:\program files (x86)\battle.net\battle.net.8518\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{5730CBE2-A7B8-449D-87B1-963E16BFDE74}D:\heroes of the storm\versions\base51779\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{6B59D17C-3876-4A1E-9F4E-C032A77DE326}D:\heroes of the storm\versions\base51779\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{EF89007E-C796-4870-92F5-A41E467FCCE1}C:\program files (x86)\battle.net\battle.net.8554\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{BE4BDEAC-E62C-446A-9F31-B764027FD59A}C:\program files (x86)\battle.net\battle.net.8554\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{436E8BDF-1738-4902-8FE8-85FECD57FF7C}D:\heroes of the storm\versions\base52008\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{D9FFF4D8-8BB5-4DAD-A2A8-AF1B816C494F}D:\heroes of the storm\versions\base52008\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{3DADB428-84BE-4FE6-B9A4-645EC55478AF}D:\heroes of the storm\versions\base52124\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{0938E052-EA19-4052-9996-C9BD861BC8DC}D:\heroes of the storm\versions\base52124\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{A7520F60-985A-4150-9ADE-93B7B2B4EBE7}C:\program files (x86)\blizzard app\battle.net.8600\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{E215CBF5-B8DE-4A75-98BF-4683A6F35E29}C:\program files (x86)\blizzard app\battle.net.8600\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{0BB6CEF6-DED5-4EA6-B0DE-D6CDAB74668A}D:\heroes of the storm\versions\base52351\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{D33D64AC-9AE5-40E7-BFF7-5A5BCEB3876E}D:\heroes of the storm\versions\base52351\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{09052050-B321-4EF0-AB5C-F8BA7FC60A24}C:\program files (x86)\blizzard app\battle.net.8657\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{9F17D201-9316-42C2-9509-C37F45106DAF}C:\program files (x86)\blizzard app\battle.net.8657\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{000DBB5D-8070-41C0-89D7-30615E91A41F}D:\heroes of the storm\versions\base52647\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{6C096652-8D16-4962-A88D-C129101F355F}D:\heroes of the storm\versions\base52647\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1B66AA5C-1BBF-4812-98D2-FFC842851002}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D28D171A-E4A8-4646-BDC4-AFC86E2213F9}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{87BBD4DA-826A-46C7-A3EF-DF38B43CB2C3}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A42D5BAD-CC3F-4E2D-B6E1-9D9E8C8BD44C}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{2D379503-968B-45D4-96FF-9B9A285B4BFD}D:\heroes of the storm\versions\base58795\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{0E900554-D3B5-4DF6-876C-2B9EE3BF4A09}D:\heroes of the storm\versions\base58795\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{EF670EA1-A8E4-4045-8739-1787BF1498A7}C:\program files (x86)\blizzard app\battle.net.9526\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{954C2865-C86B-4B76-AA25-593A5D3F3041}C:\program files (x86)\blizzard app\battle.net.9526\battle.net.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{778F3786-5082-4DB5-B08B-7FA507903C27}D:\heroes of the storm\versions\base59239\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{FE42C476-A58F-4F63-B10A-DACBC49C43C8}D:\heroes of the storm\versions\base59239\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{CA23D60B-429F-418D-807A-C6C240D2AE5F}D:\heroes of the storm\versions\base59657\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{EA82EECD-1996-4DC8-9E3C-4E53A70FB489}D:\heroes of the storm\versions\base59657\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{DB59CE41-0549-484B-952E-67F2FAFA8B5C}D:\heroes of the storm\versions\base59799\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{1804BD5D-6599-4016-AC53-CA006459B76C}D:\heroes of the storm\versions\base59799\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{F0199650-8A67-4992-9FFB-7E71126F1C46}D:\heroes of the storm\versions\base59988\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{C9A63013-76E3-41C9-BE92-C98D430A4BD8}D:\heroes of the storm\versions\base59988\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{01D0E02A-D1BD-4EDD-8697-A17D8B4760D8}C:\program files (x86)\starcraft ii\versions\base60321\sc2_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{8DFB1123-D03C-4AB7-B415-2D742162F859}C:\program files (x86)\starcraft ii\versions\base60321\sc2_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{0CBFB194-0511-4EE4-8B93-1AF87B2A10F9}D:\heroes of the storm\versions\base60399\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{8FB46018-AC9A-4E5A-A43B-F50F3B0F55EF}D:\heroes of the storm\versions\base60399\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{7F88D63F-44E5-4B4B-B761-88E2C0EEA4BB}D:\heroes of the storm\versions\base60522\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{38E57C98-61DD-4518-908A-67F8C137BDA8}D:\heroes of the storm\versions\base60522\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{096FC07F-382A-4B2B-A526-5940564A0F6C}D:\heroes of the storm\versions\base60632\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{B8068610-4B45-4BE5-90C1-E4F1B2857D64}D:\heroes of the storm\versions\base60632\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{7BD2F056-C181-43D7-BCDD-5E7F16C984F3}D:\heroes of the storm\versions\base60821\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{4A5E5BF3-9A49-4319-9872-F4FF4B4B8AA1}D:\heroes of the storm\versions\base60821\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{3B3A6183-5001-4AAC-8149-68F96BC892F2}D:\ubisoft games\assassin's creed iii\ac3sp.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{AC205C09-435B-4E0F-B20B-6D15D31FEE97}D:\ubisoft games\assassin's creed iii\ac3sp.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{FC352D25-0EB9-4817-BEDF-A67570155167}D:\ubisoft games\assassin's creed iii\ac3mp.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{4A42F362-1F27-4D2F-AF75-1FDFE82E0747}D:\ubisoft games\assassin's creed iii\ac3mp.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{5794629F-D912-48C6-BB91-C6FF5C32FFB6}D:\heroes of the storm\versions\base61129\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{80165ED4-16D2-4DD3-A3D4-B90EF6F3B77E}D:\heroes of the storm\versions\base61129\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{3C58DF06-A789-4C53-8FE4-7F3FB81C260C}D:\heroes of the storm\versions\base61361\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{AB3232DF-E603-4AC0-9810-01955DB34F57}D:\heroes of the storm\versions\base61361\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{6D4CA6A6-A243-49DA-BF14-A1441DEAC124}D:\heroes of the storm\versions\base61552\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{09E2FBD6-110C-4970-B525-A6FD63EC2A1D}D:\heroes of the storm\versions\base61552\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{887E3DF6-C23A-4C4A-90A5-F1C625E1B786}D:\heroes of the storm\versions\base62119\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{00D74579-3FF5-4392-B5F5-268E2B4FBE27}D:\heroes of the storm\versions\base62119\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{117ED6AC-8448-493E-942B-585CA8DFB713}D:\heroes of the storm\versions\base62212\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{3C6BDC0E-423C-475B-8D54-AFAB6D0DF8F1}D:\heroes of the storm\versions\base62212\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{28812A4C-4F61-4641-836C-90D3C212AADD}D:\heroes of the storm\versions\base62424\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{92659253-8BCC-4002-B76C-B8BE38BD2ACF}D:\heroes of the storm\versions\base62424\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{7925E4FE-97A9-4D14-83AE-11DBA2509E44}D:\epic games\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{69C3811E-CD8E-4A52-9010-EAC35BDADC38}D:\epic games\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{3FB1BF42-C3C2-41E6-9B97-4121FEB4E8BB}D:\epic games\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{A966F5A2-C8CF-46FA-BF39-77683F6E488D}D:\epic games\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{EF369FFE-33FB-4269-A000-B2ED712FB9FF}D:\epic games\fortnite\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{6380C527-F893-4A3F-9A2D-57328977B85A}D:\epic games\fortnite\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{82727FCB-93AD-4750-AABA-394579BBE984}D:\heroes of the storm\versions\base62833\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{D3867AE4-825F-498B-B0A5-0B90296702F6}D:\heroes of the storm\versions\base62833\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{5793053F-BEB6-4345-BAD3-43B60352C0F6}D:\heroes of the storm\versions\base63070\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{C4EE66A4-5BAE-45BF-9AF7-9AC1A387BDBA}D:\heroes of the storm\versions\base63070\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A7A22C1A-913B-441C-8805-1AF236316A95}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{197B4B93-CF68-417A-A093-A8D480192F96}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{904A717A-BA1D-4160-BAE2-FCFE30F3F8C3}D:\heroes of the storm\versions\base63402\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{BE87592B-7DD8-4612-ADAD-4E6CC5306828}D:\heroes of the storm\versions\base63402\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{33F416F8-51E6-4EE3-BA82-66500D96A35B}D:\heroes of the storm\versions\base63635\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{654AEC83-F428-44D0-8C34-A6EAB5CA778A}D:\heroes of the storm\versions\base63635\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0D988A3E-8CC1-4042-850A-92EF841A98F9}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E0A29E4F-C57D-41E1-8000-4A9212B248DE}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{20A70371-ADD8-4BCF-8919-636FF46E9581}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6D037C3F-2DE1-44B0-BC1E-33818C9F66A9}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{D982119E-74A1-4C0E-B136-3CDCA34F34EF}C:\program files (x86)\starcraft ii\versions\base63454\sc2_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{A68C9FFD-AFB4-4EFE-A723-25DAD286AF1C}C:\program files (x86)\starcraft ii\versions\base63454\sc2_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{82795002-B420-4D0C-9FD3-4AB135C88C6C}D:\heroes of the storm\versions\base64100\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{F4EA4DD0-E613-42F5-87F9-CD8C758E97F4}D:\heroes of the storm\versions\base64100\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{8832C8AB-E56E-4D1E-BD17-7EBBF1036F2D}D:\heroes of the storm\versions\base64129\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{AC9D4E61-168A-4C63-8C09-B464D1A677D4}D:\heroes of the storm\versions\base64129\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{E8591DC7-CF87-4AA8-87B4-84B57C9C9989}C:\programdata\battle.net\agent\agent.6160\agent.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{5297EB7B-3333-46A1-8B7B-C55D71ED8D3D}C:\programdata\battle.net\agent\agent.6160\agent.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{37E2876E-4516-4C5A-99DA-5C4B7A3A0280}D:\heroes of the storm\versions\base64455\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{CF9DB37F-CD99-4649-B4AD-8DF10A2520AD}D:\heroes of the storm\versions\base64455\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{541271F8-CF37-44E5-A918-49F53F7BC016}D:\heroes of the storm\versions\base69350\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{38227AAB-9380-465A-B40E-3FFC95BC9C31}D:\heroes of the storm\versions\base69350\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{B44D0F8C-FCAF-4928-BCA6-F765E65D9B65}D:\heroes of the storm\versions\base69790\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{5193C11C-2D74-4F31-92C0-A91508B0A1F2}D:\heroes of the storm\versions\base69790\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{4FDBED34-BDAA-4189-B786-6441CACDCB82}D:\heroes of the storm\versions\base69823\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{B5AA01CB-69FF-4D1B-AD31-A93300A025F6}D:\heroes of the storm\versions\base69823\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{80FAB4A4-D965-4CD6-8154-2A6485469D15}D:\destiny 2\destiny2.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{4EA3460C-AB0E-4321-A690-A23DFF5CEB5D}D:\destiny 2\destiny2.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{305EC580-7F8D-40B0-83C8-077E5EE35B06}D:\heroes of the storm\versions\base70200\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{552B3F79-9795-4C2D-B5F1-353492B7C190}D:\heroes of the storm\versions\base70200\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{4E64D7B2-6782-4333-8C34-06A3029D1A45}D:\heroes of the storm\versions\base70616\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{E2E2D14C-F867-4800-A899-208A26281BB1}D:\heroes of the storm\versions\base70616\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{A5417B9E-2ABB-443C-8019-1946D0059A5C}D:\heroes of the storm\versions\base71138\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{5A4DC5EA-9DED-47A1-BB2D-021444E80F4F}D:\heroes of the storm\versions\base71138\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{942C6320-9743-4860-8276-60DE6BD8E236}D:\lol\rads\projects\league_client\releases\0.0.0.178\deploy\leagueclient.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{3C92D566-C440-46A7-A51C-693DBAA9CFC9}D:\lol\rads\projects\league_client\releases\0.0.0.178\deploy\leagueclient.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{A3987470-644D-4307-994C-53B64C6B3994}D:\heroes of the storm\versions\base71449\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{A69FBD12-7755-47BD-84BA-58D9F1F9B5B5}D:\heroes of the storm\versions\base71449\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{578B9342-0367-472F-AB6B-3C27CB9B927E}D:\heroes of the storm\versions\base71931\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{8EE75125-972C-41A8-B7FF-2CE05B2AB305}D:\heroes of the storm\versions\base71931\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{DE8AC6ED-2CB4-48B2-B2B0-FBF94B358E69}D:\origin\apex\r5apex.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{87FC334D-1188-47B8-93B6-B5CBCFF1CBD4}D:\origin\apex\r5apex.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{D197C664-B2DD-46F9-AAA9-AEC45F25A5D0}D:\heroes of the storm\versions\base72191\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{BB11B7E5-F657-4A6C-9D25-795E0E2358DC}D:\heroes of the storm\versions\base72191\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{360C2738-392A-4003-AE66-0E635F01FBB5}D:\heroes of the storm\versions\base72307\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{2D6ECB5B-BCAD-49A7-9918-6FAE2AE8A00D}D:\heroes of the storm\versions\base72307\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{FE13EA00-D9F1-4F6E-9A21-BCA8354F0BE9}D:\heroes of the storm\versions\base72481\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{DE3370F5-0BCB-408A-BA91-9335B98351AA}D:\heroes of the storm\versions\base72481\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{D14AE3DA-042B-4D6E-8A92-5004ABCCCEBD}D:\heroes of the storm\versions\base72649\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{EB55683F-605A-4785-A10E-BBAF170B9A25}D:\heroes of the storm\versions\base72649\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{35CBB580-0B89-42C0-8182-46CBE89D69E3}D:\heroes of the storm\versions\base73016\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{3E831CCD-8C6F-4EFF-9148-8C0C765DCEE8}D:\heroes of the storm\versions\base73016\heroesofthestorm_x64.exe" => removed successfully

=========== EmptyTemp: ==========

BITS transfer queue => 10510336 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 295363172 B
Java, Flash, Steam htmlcache => 595277402 B
Windows/system/drivers => 4874697 B
Edge => 7652881 B
Chrome => 416882584 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 38788 B
LocalService => 0 B
NetworkService => 0 B
NetworkService => 0 B
User007 => 81572086 B

RecycleBin => 3467363 B
EmptyTemp: => 1.3 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 18:13:24 ====

Re: Velké využití RAM už po startu Windows 10

Napsal: 04 kvě 2019 17:50
od Rudy
Smazáno. Nastala nějaká změna?

Re: Velké využití RAM už po startu Windows 10

Napsal: 04 kvě 2019 17:57
od VelkejPitomec
Ano, už při použití AdWCleaneru byla znatelná změna v úbytku zaplnění RAM. Nyní to ještě o trochu kleslo, paráda :happy:

Re: Velké využití RAM už po startu Windows 10

Napsal: 04 kvě 2019 18:51
od Rudy
Tak to jsem rád. :)

Re: Velké využití RAM už po startu Windows 10

Napsal: 04 kvě 2019 22:42
od VelkejPitomec
Moc děkuju za pomoc, už jsem začínal hledat nějakou funkční zálohu systému :)

Re: Velké využití RAM už po startu Windows 10

Napsal: 05 kvě 2019 10:13
od Rudy
OK a nemáte zač! :)